Unrated severityNVD Advisory· Published Oct 10, 2012· Updated Apr 29, 2026
CVE-2012-5355
CVE-2012-5355
Description
welcome.py in xdiagnose before 2.5.2ubuntu0.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.
Affected products
4cpe:2.3:a:bryce_harrington:xdiagnose:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:bryce_harrington:xdiagnose:*:*:*:*:*:*:*:*range: <=2.5
- cpe:2.3:a:bryce_harrington:xdiagnose:0.2-0ubuntu2:*:*:*:*:*:*:*
- cpe:2.3:a:bryce_harrington:xdiagnose:1.6:*:*:*:*:*:*:*
- cpe:2.3:a:bryce_harrington:xdiagnose:1.6.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.