KDE Mcoputils Insecure Temporary File Creation Vulnerability
BID:10952
Info
KDE Mcoputils Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 10952 |
| Class: | Race Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 16 2004 12:00AM |
| Updated: | Aug 16 2004 12:00AM |
| Credit: | This issue was reported by Andrew Tuitt. |
| Vulnerable: |
KDE KDE 3.2.3 KDE KDE 3.2.2 KDE KDE 3.2.1 KDE KDE 3.1.5 KDE KDE 3.1.4 KDE KDE 3.1.3 KDE KDE 3.1.2 KDE KDE 3.1.1 a KDE KDE 3.1.1 KDE KDE 3.1 KDE KDE 3.0.5 b KDE KDE 3.0.5 a KDE KDE 3.0.5 KDE KDE 3.0.4 KDE KDE 3.0.3 a KDE KDE 3.0.3 KDE KDE 3.0.2 KDE KDE 3.0.1 KDE KDE 3.0 KDE KDE 2.2.2 KDE KDE 2.2.1 KDE KDE 2.2 KDE KDE 2.1.2 KDE KDE 2.1.1 KDE KDE 2.1 KDE KDE 2.0.1 KDE KDE 2.0 BETA KDE KDE 2.0 KDE KDE 1.2 KDE KDE 1.1.2 KDE KDE 1.1.1 KDE KDE 1.1 |
| Not Vulnerable: | |
Discussion
KDE Mcoputils Insecure Temporary File Creation Vulnerability
KDEs mcoputils is reported to contain an insecure temporary file creation vulnerability. The result of this is that temporary files created by the application may use predictable filenames.
A local attacker may also possibly exploit this vulnerability to execute symbolic link file overwrite attacks. This may allow an attacker to overwrite arbitrary files with the privileges of the targeted user. Privilege escalation may also be possible using this method of attack.
KDEs mcoputils is reported to contain an insecure temporary file creation vulnerability. The result of this is that temporary files created by the application may use predictable filenames.
A local attacker may also possibly exploit this vulnerability to execute symbolic link file overwrite attacks. This may allow an attacker to overwrite arbitrary files with the privileges of the targeted user. Privilege escalation may also be possible using this method of attack.
Exploit / POC
KDE Mcoputils Insecure Temporary File Creation Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
KDE Mcoputils Insecure Temporary File Creation Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.