Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-5298

Опубликовано: 16 окт. 2006
Источник: ubuntu
Приоритет: medium
CVSS2: 1.2

Описание

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.

РелизСтатусПримечание
dapper

released

1.5.11-3ubuntu2.2
devel

released

1.5.13-1.1ubuntu3
edgy

released

1.5.12-1ubuntu1.1
feisty

released

1.5.13-1.1ubuntu3
upstream

needs-triage

Показывать по

1.2 Low

CVSS2

Связанные уязвимости

nvd
больше 19 лет назад

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.

debian
больше 19 лет назад

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlie ...

github
почти 4 года назад

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.

1.2 Low

CVSS2