CVE Database
/

CVE-2011-4328

Back to search

CVE-2011-4328

Published: Jun 16, 2012

Modified: Aug 7, 2024

PUBLISHED

Description

plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.

VendorProductVersions

n/a

n/a

affected
n/a

References

openSUSE-SU-2012:0330
vendor-advisory
x_refsource_SUSE
48325
third-party-advisory
x_refsource_SECUNIA
50747
vdb-entry
x_refsource_BID
openSUSE-SU-2012:0369
vendor-advisory
x_refsource_SUSE
DSA-2435
vendor-advisory
x_refsource_DEBIAN
77243
vdb-entry
x_refsource_OSVDB
48466
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now