Description
XRunSabre in sabre (aka xsabre) 0.2.4b relies on the ability to create /tmp/sabre.log, which allows local users to cause a denial of service (application unavailability) by creating a /tmp/sabre.log file that cannot be overwritten.
Affected products
- Debian / xsabre0.2.4b – 0.2.4b
References
- VENDOR_ADVISORYhttp://bugs.debian.org/433996
- MISChttp://osvdb.org/48900