Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-3421

Опубликовано: 05 мая 2014
Источник: redhat
CVSS2: 2.1

Описание

lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gnus.face.ppm temporary file.

Отчет

Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5emacsWill not fix
Red Hat Enterprise Linux 6emacsWill not fix
Red Hat Enterprise Linux 7emacsWill not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-377
https://bugzilla.redhat.com/show_bug.cgi?id=1095586emacs: multiple temporary file issues

2.1 Low

CVSS2

Связанные уязвимости

ubuntu
больше 12 лет назад

lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gnus.face.ppm temporary file.

nvd
больше 12 лет назад

lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gnus.face.ppm temporary file.

debian
больше 12 лет назад

lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users ...

github
около 4 лет назад

lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gnus.face.ppm temporary file.

suse-cvrf
больше 11 лет назад

Security update for emacs

2.1 Low

CVSS2