Unrated severityNVD Advisory· Published Jan 10, 2005· Updated Apr 16, 2026
CVE-2004-0996
CVE-2004-0996
Description
main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
Affected products
21cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*+ 11 more
- cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:alpha:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:arm:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:hppa:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:ia-32:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:ia-64:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:m68k:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:mips:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:mipsel:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:ppc:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:s-390:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:sparc:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- www.debian.org/security/2004/dsa-610nvdPatchVendor Advisory
- www.securityfocus.com/bid/11697nvdExploitPatchVendor Advisory
- docs.info.apple.com/article.htmlnvd
- lists.apple.com/archives/security-announce//2007/Jul/msg00004.htmlnvd
- marc.infonvd
- secunia.com/advisories/26235nvd
- www.gentoo.org/security/en/glsa/glsa-200412-11.xmlnvd
- www.securityfocus.com/archive/1/381443nvd
- www.securityfocus.com/archive/1/381506nvd
- www.securityfocus.com/archive/1/381611nvd
- www.securityfocus.com/bid/25159nvd
- www.vupen.com/english/advisories/2007/2732nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18125nvd
News mentions
0No linked articles in our index yet.