Back to search
CVE-2005-2918
Published: Sep 15, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
The open_cmd_tube function in mount.c for gtkdiskfree 1.9.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the gtkdiskfree temporary file.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20050915 gtkdiskfree insecure temporary file creation
mailing-list
x_refsource_BUGTRAQ
17056
third-party-advisory
x_refsource_SECUNIA
http://bugs.gentoo.org/show_bug.cgi?id=104565
x_refsource_CONFIRM
GLSA-200510-01
vendor-advisory
x_refsource_GENTOO
16951
third-party-advisory
x_refsource_SECUNIA
http://www.zataz.net/adviso/gtkdiskfree-09052005.txt
x_refsource_MISC
DSA-822
vendor-advisory
x_refsource_DEBIAN
17005
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now