CVE-2009-5079
published 2011-06-30CVE-2009-5079: The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to…
PriorityP49low3.3CVSS 2.0
AVLACMAuNCNIPAP
EPSS
0.30%
21.9th percentile
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | groff | < groff 1.20.1-5 (bookworm) | groff 1.20.1-5 (bookworm) |
| gnu | groff | <= 1.21 | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | — | — |
| gnu | groff | >= 0 < 1.20.1-5 | 1.20.1-5 |
| gnu | groff | >= 0 < 1.20.1-5 | 1.20.1-5 |
| gnu | groff | >= 0 < 1.20.1-5 | 1.20.1-5 |
| gnu | groff | >= 0 < 1.20.1-5 | 1.20.1-5 |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:N/I:P/A:P
osv3.3LOW
vendor_redhat6.0MEDIUM
vendor_debian3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xq95-4rwq-mppc: The (1) gendef
ghsa_unreviewed·2022-05-02
CVE-2009-5079 [LOW] CWE-59 GHSA-xq95-4rwq-mppc: The (1) gendef
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.
OSV
CVE-2009-5079: The (1) gendef
osv·2011-06-30·CVSS 3.3
CVE-2009-5079 [LOW] CVE-2009-5079: The (1) gendef
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.
Debian
CVE-2009-5079: groff - The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in...
vendor_debian·2009·CVSS 3.3
CVE-2009-5079 [LOW] CVE-2009-5079: groff - The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in...
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.
Scope: local
bookworm: resolved (fixed in 1.20.1-5)
bullseye: resolved (fixed in 1.20.1-5)
forky: resolved (fixed in 1.20.1-5)
sid: resolved (fixed in 1.20.1-5)
trixie: resolved (fixed in 1.20.1-5)
Red Hat
gdm not built with tcp_wrappers
vendor_redhat·2007-05-11·CVSS 6.0
CVE-2009-2697 [MEDIUM] gdm not built with tcp_wrappers
gdm not built with tcp_wrappers
The Red Hat build script for the GNOME Display Manager (GDM) before 2.16.0-56 on Red Hat Enterprise Linux (RHEL) 5 omits TCP Wrapper support, which might allow remote attackers to bypass intended access restrictions via XDMCP connections, a different vulnerability than CVE-2007-5079.
Red Hat
CVE-2009-5079: The (1) gendef
vendor_redhat·CVSS 3.3
CVE-2009-5079 [LOW] CVE-2009-5079: The (1) gendef
The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.
Statement: The Red Hat Security Response Team has rated this issue as having low security impact because it can only be exploited during package compilation. We do not currently plan to fix this flaw.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://cvsweb.openwall.com/cgi/cvsweb.cgi/Owl/packages/groff/groff-1.20.1-owl-tmp.diffhttp://cvsweb.openwall.com/cgi/cvsweb.cgi/Owl/packages/groff/groff-1.20.1-owl-tmp.diff.diff?r1=1.1%3Br2=1.2%3Bf=hhttp://openwall.com/lists/oss-security/2009/08/14/4http://openwall.com/lists/oss-security/2009/08/14/5http://www.mandriva.com/security/advisories?name=MDVSA-2013:085http://www.mandriva.com/security/advisories?name=MDVSA-2013:086http://cvsweb.openwall.com/cgi/cvsweb.cgi/Owl/packages/groff/groff-1.20.1-owl-tmp.diffhttp://cvsweb.openwall.com/cgi/cvsweb.cgi/Owl/packages/groff/groff-1.20.1-owl-tmp.diff.diff?r1=1.1%3Br2=1.2%3Bf=hhttp://openwall.com/lists/oss-security/2009/08/14/4http://openwall.com/lists/oss-security/2009/08/14/5http://www.mandriva.com/security/advisories?name=MDVSA-2013:085http://www.mandriva.com/security/advisories?name=MDVSA-2013:086
2011-06-30
Published