CVE-2014-5260
Publication date 16 August 2014
Last updated 16 September 2025
Ubuntu priority
Description
The (1) mkxmltype and (2) mkdtskel scripts in XML-DT before 0.64 allow local users to overwrite arbitrary files via a symlink attack on a /tmp/_xml_##### temporary file.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| libxml-dt-perl | ||
| 18.04 LTS bionic |
Not affected
|
|
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |