mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 15:15:46 +02:00
750 B
750 B
CVE-2012-4676
Description
The errorExitIfAttackViaString function in Tunnelblick 3.3beta20 and earlier allows local users to delete arbitrary files by constructing a (1) symlink or (2) hard link, a different vulnerability than CVE-2012-3485.
POC
Reference
- http://www.openwall.com/lists/oss-security/2012/08/14/1
- http://www.openwall.com/lists/oss-security/2012/08/14/1
Github
No PoCs found on GitHub currently.