Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4vwq-rgw9-5x74

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.

The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.

EPSS

Процентиль: 8%
0.00034
Низкий

Дефекты

CWE-59

Связанные уязвимости

ubuntu
около 17 лет назад

The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.

redhat
около 17 лет назад

The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.

nvd
около 17 лет назад

The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.

debian
около 17 лет назад

The MagnatuneBrowser::listDownloadComplete function in magnatunebrowse ...

EPSS

Процентиль: 8%
0.00034
Низкий

Дефекты

CWE-59