Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2009-5079

Published: June 30, 2011Last modified: November 10, 2023

Description

The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSgroffNot affected (1.22.4-r1)
StreamgroffNot affected (1.22.4-r2)

References

ON THIS PAGE