Description
contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 allows local users to overwrite arbitrary files via a symlink attack on a pdf#####.tmp temporary file.
CVSS vector
AV:L/AC:M/C:N/I:P/A:PExploitability: 3.4 | Impact: 4.9 Affected Packages3 packages
🔴Vulnerability Details
3GHSAGHSA-f2wq-wrc8-9j57: contrib/pdfmark/pdfroff↗2022-05-03 ▶ OSVCVE-2009-5044: contrib/pdfmark/pdfroff↗2011-06-24 ▶ CVEListCVE-2009-5044: contrib/pdfmark/pdfroff↗2011-06-24 ▶ 📋Vendor Advisories
3Red Hatgroff: insecure temporary file handling in pdfroff↗2009-07-24 ▶ DebianCVE-2009-5044: groff - contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 allows local use...↗2009 ▶ AppleCVE-2009-5044: OS X Yosemite v10.10.5 and Security Update 2015-006↗ ▶ 💬Community
3BugzillaCVE-2009-5044 groff: insecure temporary file handling in pdfroff [fedora-14]↗2011-05-31 ▶ BugzillaCVE-2009-5044 groff: insecure temporary file handling in pdfroff↗2011-05-31 ▶ BugzillaCVE-2009-5044 groff: insecure temporary file handling in pdfroff [fedora-15]↗2011-05-31 ▶