CVE-2015-0858: Debian Linux
Low severity, CVSS 3.3. EPSS: 0.4% chance of exploitation in the next 30 days.
Cool Projects TarDiff allows local users to write to arbitrary files via a symlink attack on a pathname in a /tmp/tardiff-$$ temporary directory.
Affected products
- Debian Debian Linux: version 8.0 only
- Tardiff Project Tardiff: affected versions not specified
Published 2016-05-06. Last modified 2026-06-17.