CVE-2008-4996

Source
https://cve.org/CVERecord?id=CVE-2008-4996
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2008-4996.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2008-4996
Downstream
Published
2008-11-07T19:36:23Z
Modified
2026-04-10T03:40:19.696344Z
Summary
[none]
Details

init in initramfs-tools 0.92f allows local users to overwrite arbitrary files via a symlink attack on the /tmp/initramfs.debug temporary file. NOTE: the vendor disputes this vulnerability, stating that "init is [used in] a single-user context; there's no possibility that this is exploitable.

Database specific
{
    "isDisputed": true
}
References

Affected packages