cbcvebase.
CVE-2010-2794
published 2010-08-30

CVE-2010-2794: The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file.

low3.3CVSS 3.1
AVLACMAuNCNIPAP
The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file.

Affected

1 ranges
VendorProductVersion rangeFixed in
redhatspice-xpi