CVE-2017-8934

PCManFM 1.2.5 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (application unavailability).
Configurations

Configuration 1 (hide)

cpe:2.3:a:pcmanfm_project:pcmanfm:1.2.5:*:*:*:*:*:*:*

History

21 Nov 2024, 03:35

Type Values Removed Values Added
References () https://bugs.debian.org/862571 - Third Party Advisory () https://bugs.debian.org/862571 - Third Party Advisory
References () https://git.lxde.org/gitweb/?p=lxde/pcmanfm.git%3Ba=commit%3Bh=bc8c3d871e9ecc67c47ff002b68cf049793faf08 - () https://git.lxde.org/gitweb/?p=lxde/pcmanfm.git%3Ba=commit%3Bh=bc8c3d871e9ecc67c47ff002b68cf049793faf08 -

Information

Published : 2017-05-15 14:29

Updated : 2025-04-20 01:37


NVD link : CVE-2017-8934

Mitre link : CVE-2017-8934

CVE.ORG link : CVE-2017-8934


JSON object : View

Products Affected

pcmanfm_project

  • pcmanfm
CWE
CWE-20

Improper Input Validation