Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-5298

Опубликовано: 16 окт. 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 1.2

Описание

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.

РелизСтатусПримечание
dapper

released

1.5.11-3ubuntu2.2
devel

released

1.5.13-1.1ubuntu3
edgy

released

1.5.12-1ubuntu1.1
feisty

released

1.5.13-1.1ubuntu3
upstream

needs-triage

Показывать по

EPSS

Процентиль: 19%
0.0006
Низкий

1.2 Low

CVSS2

Связанные уязвимости

nvd
почти 19 лет назад

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.

debian
почти 19 лет назад

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlie ...

github
больше 3 лет назад

The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.

EPSS

Процентиль: 19%
0.0006
Низкий

1.2 Low

CVSS2