init in initramfs-tools 0.92f allows local users to overwrite arbitrary files via a symlink attack on the /tmp/initramfs.debug temporary file. NOTE: the vendor disputes this vulnerability, stating that "init is [used in] a single-user context; there's no possibility that this is exploitable.
Metrics
Affected Vendors & Products
References
History
Fri, 17 Jan 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-17T15:24:30.124Z
Reserved: 2008-11-07T00:00:00Z
Link: CVE-2008-4996

Updated: 2024-08-07T10:31:28.423Z

Status : Deferred
Published: 2008-11-07T19:36:23.963
Modified: 2025-04-09T00:30:58.490
Link: CVE-2008-4996

No data.