Summary
The remote host is missing an update to catdoc
announced via advisory DSA 575-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20575-1
Insight
A temporary file problem has been discovered in xlsview from the catdoc suite, convertors from Word to TeX and plain text, which could lead to local users being able to overwrite arbitrary files via a symlink attack on predictable temporary file names.
For the stable distribution (woody) this problem has been fixed in version 0.91.5-1.woody3.
For the unstable distribution (sid) this problem has been fixed in version 0.91.5-2.
We recommend that you upgrade your catdoc package.
Severity
Classification
-
CVE CVE-2003-0193 -
CVSS Base Score: 2.1
AV:L/AC:L/Au:N/C:N/I:P/A:N
Related Vulnerabilities