Описание
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 0.8.10-3ubuntu1 |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| maverick | ignored | end of life |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | released | 0.8.10-3ubuntu1 |
| quantal | released | 0.8.10-3ubuntu1 |
| raring | released | 0.8.10-3ubuntu1 |
| saucy | released | 0.8.10-3ubuntu1 |
Показывать по
Ссылки на источники
5 Medium
CVSS2
Связанные уязвимости
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions ( ...
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.
5 Medium
CVSS2