CVE-2005-3349

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
18/11/2005
Last modified:
03/04/2025

Description

GNU Gnump3d before 2.9.8 allows local users to modify or delete arbitrary files via a symlink attack on the index.lok temporary file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnu:gnump3d:*:*:*:*:*:*:*:* 2.9.7 (including)
cpe:2.3:a:gnu:gnump3d:2.9:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnump3d:2.9.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnump3d:2.9.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnump3d:2.9.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnump3d:2.9.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnump3d:2.9.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:gnump3d:2.9.6:*:*:*:*:*:*:*