CVE-2007-2056
概要

Rejected reason: The getlock function in aimage/aimage.cpp in AFFLIB 2.2.8 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary lock files (aka "time-of-check-time-of-use file race"). NOTE: the researcher has retracted the original advisory, stating that "the portion of vulnerable code is not called in any current version of AFFLIB and is therefore not exploitable.

公表日 2007年5月1日7:19
登録日 2021年1月29日14:10
最終更新日 2023年11月7日11:00
関連情報、対策とツール
共通脆弱性一覧