Vulnerabilities (CVE)

Filtered by vendor Debian Subscribe
Filtered by product Feta
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4440 1 Debian 1 Feta 2023-12-10 7.2 HIGH N/A
The to-upgrade plugin in feta 1.4.16 allows local users to overwrite arbitrary files via a symlink on the (1) /tmp/feta.install.$USER and (2) /tmp/feta.avail.$USER temporary files.