CVE-2005-3342

Publication date 31 December 2005

Last updated 17 July 2025


Ubuntu priority

noweb 2.10c and earlier allows local users to overwrite arbitrary files via symlink attacks on temporary files in (1) lib/toascii.nw and (2) shell/roff.mm.

Status

Package Ubuntu Release Status
noweb 7.04 feisty
Fixed 2.10c-3.2.1
6.10 edgy
Fixed 2.10c-3.2.1
6.06 LTS dapper
Fixed 2.10c-3.2.1

References

Related Ubuntu Security Notices (USN)

    • USN-254-1
    • noweb vulnerability
    • 22 February 2006

Other references