CVE-2007-4460

The RenderV2ToFile function in tag_file.cpp in id3lib (aka libid3) 3.8.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file whose name is constructed from the name of a file being tagged.
Configurations

Configuration 1 (hide)

cpe:2.3:a:id3lib:id3lib:3.8.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-08-21 21:17

Updated : 2008-09-05 21:28


NVD link : CVE-2007-4460

Mitre link : CVE-2007-4460

CVE.ORG link : CVE-2007-4460


JSON object : View

Products Affected

id3lib

  • id3lib