MGDiff Insecure Temporary File Creation Vulnerability
BID:15180
Info
MGDiff Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 15180 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 20 2005 12:00AM |
| Updated: | Oct 20 2005 12:00AM |
| Credit: | Javier Fernandez-Sanguino Pena discovered this vulnerability. |
| Vulnerable: |
Mgdiff mgdiff 1.0 |
| Not Vulnerable: | |
Discussion
MGDiff Insecure Temporary File Creation Vulnerability
Mgdiff creates temporary files in an insecure manner.
Exploitation would most likely result in loss of data or a denial of service if critical files are overwritten in the attack. Other attacks may be possible as well.
Mgdiff creates temporary files in an insecure manner.
Exploitation would most likely result in loss of data or a denial of service if critical files are overwritten in the attack. Other attacks may be possible as well.
Exploit / POC
MGDiff Insecure Temporary File Creation Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
MGDiff Insecure Temporary File Creation Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
MGDiff Insecure Temporary File Creation Vulnerability
References:
References:
- Debian Bug report logs - #335188 (Debian)