Logo
vulnerabilityCVE-2007-4460
Name
CVE-2007-4460
Source
NVD ( link)Debian ( link)
Description
The RenderV2ToFile function in tag_file.cpp in id3lib (aka libid3) 3.8.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file whose name is constructed from the name of a file being tagged.
CWEs
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
id3lib
Patched

Vulnerability Rating#


7.2
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
3.8.3
Not Affected
yocto
scarthgap
3.8.3
Patched