Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-14307

Опубликовано: 09 дек. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 8.1

Описание

An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The createTempFile method fails to securely create temporary files, allowing attackers to exploit race conditions and potentially execute arbitrary code or overwrite critical files. This vulnerability can be exploited by manipulating the temporary file creation process, leading to potential unauthorized actions.

РелизСтатусПримечание
devel

needed

1.9.3.9-5
esm-apps-legacy/xenial

released

1.9.2.5-2ubuntu0.1~esm1
esm-apps/bionic

released

1.9.3.1-1ubuntu0.1~esm1
esm-apps/focal

released

1.9.3.7-1ubuntu0.1~esm1
esm-apps/jammy

released

1.9.3.9-2ubuntu0.1~esm1
esm-apps/noble

released

1.9.3.9-3ubuntu0.1~esm1
esm-apps/resolute

released

1.9.3.9-4ubuntu0.26.04.1~esm1
esm-apps/xenial

ignored

end of ESM support, was needs-triage
jammy

needed

1.9.3.9-2
noble

needed

1.9.3.9-3

Показывать по

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
8 месяцев назад

An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The createTempFile method fails to securely create temporary files, allowing attackers to exploit race conditions and potentially execute arbitrary code or overwrite critical files. This vulnerability can be exploited by manipulating the temporary file creation process, leading to potential unauthorized actions.

CVSS3: 8.1
debian
8 месяцев назад

An insecure temporary file creation vulnerability exists in the AutoEx ...

github
8 месяцев назад

Robocode has an insecure temporary file creation vulnerability in the AutoExtract component

8.1 High

CVSS3