Unrated severityNVD Advisory· Published Nov 18, 2008· Updated Apr 23, 2026
CVE-2008-5140
CVE-2008-5140
Description
trend-autoupdate.new in mailscanner 4.55.10 and other versions before 4.74.16-1 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/opr.ini.##### or (2) /tmp/lpt*.zip temporary file.
Affected products
1- cpe:2.3:a:debian:mailscanner:4.55.10:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/33117nvdVendor Advisory
- www.mailscanner.info/ChangeLognvdVendor Advisory
- bugs.debian.org/cgi-bin/bugreport.cginvd
- lists.debian.org/debian-devel/2008/08/msg00285.htmlnvd
- secunia.com/advisories/32730nvd
- www.securityfocus.com/bid/32376nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/46725nvd
News mentions
0No linked articles in our index yet.