Unrated severityNVD Advisory· Published Sep 24, 2008· Updated Apr 23, 2026
CVE-2008-4191
CVE-2008-4191
Description
extract-table.pl in Emacspeak 26 and 28 allows local users to overwrite arbitrary files via a symlink attack on the extract-table.csv temporary file.
Affected products
2cpe:2.3:a:emacspeak_inc:emacspeak:26.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:emacspeak_inc:emacspeak:26.0:*:*:*:*:*:*:*
- cpe:2.3:a:emacspeak_inc:emacspeak:28.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- secunia.com/advisories/31880nvdVendor Advisory
- bugs.debian.org/cgi-bin/bugreport.cginvd
- dev.gentoo.org/~rbu/security/debiantemp/emacspeaknvd
- secunia.com/advisories/32071nvd
- www.openwall.com/lists/oss-security/2008/10/30/2nvd
- www.securityfocus.com/bid/31241nvd
- bugs.gentoo.org/show_bug.cginvd
- bugzilla.redhat.com/show_bug.cginvd
- exchange.xforce.ibmcloud.com/vulnerabilities/45237nvd
- www.redhat.com/archives/fedora-package-announce/2008-October/msg00010.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-October/msg00012.htmlnvd
News mentions
0No linked articles in our index yet.