FDclone 2.00a, and other versions before 2.02a, creates temporary directories with predictable names and uses them if they already exist, which allows local users to read or modify files of other fdclone users by creating the directory ahead of time.
References
Configurations
History
20 Nov 2024, 23:45
Type | Values Removed | Values Added |
---|---|---|
References | () http://bugs.debian.org/cgi-bin/bugreport.cgi?archive=no&bug=186219 - | |
References | () https://www.debian.org/security/2003/dsa-352 - |
Information
Published : 2003-08-27 04:00
Updated : 2024-11-20 23:45
NVD link : CVE-2003-0596
Mitre link : CVE-2003-0596
CVE.ORG link : CVE-2003-0596
JSON object : View
Products Affected
fdclone
- fdclone
CWE