CVE Vulnerabilities

CVE-2004-0996

Published: Jan 10, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.

Affected Software

NameVendorStart VersionEnd Version
CscopeCscope13.0 (including)13.0 (including)
CscopeCscope15.1 (including)15.1 (including)
CscopeCscope15.3 (including)15.3 (including)
CscopeCscope15.4 (including)15.4 (including)
CscopeCscope15.5 (including)15.5 (including)
CscopeUbuntudapper*
CscopeUbuntudevel*
CscopeUbuntuedgy*
CscopeUbuntufeisty*

References