CVE-2005-4803
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2005
Last modified:
03/04/2025
Description
graphviz before 2.2.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files. NOTE: this issue was originally associated with a different CVE identifier, CVE-2005-2965, which had been used for multiple different issues. This is the correct identifier.
Impact
Base Score 2.0
3.60
Severity 2.0
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:graphviz:graphviz:*:*:*:*:*:*:*:* | 2.2 (including) | |
cpe:2.3:a:graphviz:graphviz:1.5.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.5.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.5.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5.7:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5_0.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5_0.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.5_0.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:graphviz:graphviz:1.7.16.1:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/17121
- http://secunia.com/advisories/17125
- http://secunia.com/advisories/17207
- http://www.debian.org/security/2005/dsa-857
- http://www.mandriva.com/security/advisories?name=MDKSA-2005%3A188
- http://www.securityfocus.com/bid/15050
- https://usn.ubuntu.com/208-1/
- http://secunia.com/advisories/17121
- http://secunia.com/advisories/17125
- http://secunia.com/advisories/17207
- http://www.debian.org/security/2005/dsa-857
- http://www.mandriva.com/security/advisories?name=MDKSA-2005%3A188
- http://www.securityfocus.com/bid/15050
- https://usn.ubuntu.com/208-1/