DEBIAN-CVE-2008-2266

Source
https://security-tracker.debian.org/tracker/CVE-2008-2266
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2008-2266.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2008-2266
Upstream
Published
2008-05-16T12:54:00Z
Modified
2025-11-19T01:04:39.668029Z
Summary
[none]
Details

uulib/uunconc.c in UUDeview 0.5.20, as used in nzbget before 0.3.0 and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on a temporary filename generated by the tempnam function. NOTE: this may be a CVE-2004-2265 regression.

References

Affected packages

Debian:11 / uudeview

Package

Name
uudeview
Purl
pkg:deb/debian/uudeview?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.5.20-3.1

Ecosystem specific

{
    "urgency": "low"
}

Database specific

source

"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2008-2266.json"

Debian:12 / uudeview

Package

Name
uudeview
Purl
pkg:deb/debian/uudeview?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.5.20-3.1

Ecosystem specific

{
    "urgency": "low"
}

Database specific

source

"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2008-2266.json"

Debian:13 / uudeview

Package

Name
uudeview
Purl
pkg:deb/debian/uudeview?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.5.20-3.1

Ecosystem specific

{
    "urgency": "low"
}

Database specific

source

"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2008-2266.json"

Debian:14 / uudeview

Package

Name
uudeview
Purl
pkg:deb/debian/uudeview?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.5.20-3.1

Ecosystem specific

{
    "urgency": "low"
}

Database specific

source

"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2008-2266.json"