CVE-2005-2672

pwmconfig in LM_sensors before 2.9.1 creates temporary files insecurely, which allows local users to overwrite arbitrary files via a symlink attack on the fancontrol temporary file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:lm_sensors:lm_sensors:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.3.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.3.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.3.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.3.3:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.3.4:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.4.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.4.4:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.4.5:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.5.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.5.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.5.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.5.3:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.5.4:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.5.5:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.6.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.6.3:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.6.4:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.6.5:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.7.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.0:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.1:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.2:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.3:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.4:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.5:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.6:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.7:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.8.8:*:*:*:*:*:*:*
cpe:2.3:a:lm_sensors:lm_sensors:2.9.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:00

Type Values Removed Values Added
References () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=324193 - () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=324193 -
References () http://secunia.com/advisories/16501 - () http://secunia.com/advisories/16501 -
References () http://secunia.com/advisories/17499 - () http://secunia.com/advisories/17499 -
References () http://secunia.com/advisories/17535 - () http://secunia.com/advisories/17535 -
References () http://secure.netroedge.com/~lm78/cvs/lm_sensors2/CHANGES - () http://secure.netroedge.com/~lm78/cvs/lm_sensors2/CHANGES -
References () http://securitytracker.com/id?1015180 - () http://securitytracker.com/id?1015180 -
References () http://www.debian.org/security/2005/dsa-814 - () http://www.debian.org/security/2005/dsa-814 -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2005:149 - () http://www.mandriva.com/security/advisories?name=MDKSA-2005:149 -
References () http://www.redhat.com/support/errata/RHSA-2005-825.html - () http://www.redhat.com/support/errata/RHSA-2005-825.html -
References () http://www.securityfocus.com/bid/14624 - () http://www.securityfocus.com/bid/14624 -
References () http://www.vupen.com/english/advisories/2005/1492 - () http://www.vupen.com/english/advisories/2005/1492 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9993 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9993 -
References () https://usn.ubuntu.com/172-1/ - () https://usn.ubuntu.com/172-1/ -

Information

Published : 2005-08-23 04:00

Updated : 2025-04-03 01:03


NVD link : CVE-2005-2672

Mitre link : CVE-2005-2672

CVE.ORG link : CVE-2005-2672


JSON object : View

Products Affected

lm_sensors

  • lm_sensors