scanbuttond Insecure Temporary File Creation Vulnerability
BID:26617
Info
scanbuttond Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 26617 |
| Class: | Race Condition Error |
| CVE: |
CVE-2007-6131 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 14 2007 12:00AM |
| Updated: | Nov 28 2007 03:03PM |
| Credit: | Michal Jaegermann discovered this vulnerability. |
| Vulnerable: |
scanbuttond scanbuttond 0.2.3 |
| Not Vulnerable: | |
Discussion
scanbuttond Insecure Temporary File Creation Vulnerability
scanbuttond is prone to a security vulnerability because it creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks such as privilege-escalation may also be possible.
This issue affects scanbuttond 0.2.3; other versions may also be vulnerable.
scanbuttond is prone to a security vulnerability because it creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks such as privilege-escalation may also be possible.
This issue affects scanbuttond 0.2.3; other versions may also be vulnerable.
Exploit / POC
scanbuttond Insecure Temporary File Creation Vulnerability
An attacker uses readily available commands to exploit the issue.
An attacker uses readily available commands to exploit the issue.
Solution / Fix
scanbuttond Insecure Temporary File Creation Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
scanbuttond Insecure Temporary File Creation Vulnerability
References:
References:
- Bugzilla Bug 383131: CVE-2007-6131 scanbuttond: unsafe usage of temporary files (Michal Jaegermann)
- scanbuttond Home Page (scanbuttond)