Unrated severityNVD Advisory· Published Dec 8, 2008· Updated Apr 23, 2026
CVE-2008-5366
CVE-2008-5366
Description
The postinst script in ppp 2.4.4rel on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/probe-finished or (2) /tmp/ppp-errors temporary file.
Affected products
1- cpe:2.3:a:marco_d\'itri:ppp:2.4.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.