Unrated severityNVD Advisory· Published Dec 31, 2005· Updated Apr 16, 2026
CVE-2005-4536
CVE-2005-4536
Description
Mail::Audit module in libmail-audit-perl 2.1-5, when logging is enabled without a default log file specified, uses predictable log filenames, which allows local users to overwrite arbitrary files via a symlink attack on the [PID]-audit.log temporary file.
Affected products
1- cpe:2.3:a:debian:libmail-audit-perl:2.1-5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/18652nvdVendor Advisory
- secunia.com/advisories/18656nvdVendor Advisory
- www.debian.org/security/2006/dsa-960nvdVendor Advisory
- bugs.debian.org/cgi-bin/bugreport.cginvd
- www.securityfocus.com/bid/16434nvd
- www.vupen.com/english/advisories/2006/0378nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/24380nvd
News mentions
0No linked articles in our index yet.