Field Assessment
AI analysis pending.
CVE
CVE-2008-4440
Severity
HIGH
CVSS
7.2
EPSS
0.34%
Original Filing — NVD Description
The to-upgrade plugin in feta 1.4.16 allows local users to overwrite arbitrary files via a symlink on the (1) /tmp/feta.install.$USER and (2) /tmp/feta.avail.$USER temporary files.