Bournal Insecure Temporary File Creation Vulnerability
BID:38353
Info
Bournal Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 38353 |
| Class: | Design Error |
| CVE: |
CVE-2010-0118 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 22 2010 12:00AM |
| Updated: | Apr 16 2015 05:42PM |
| Credit: | Secunia Research |
| Vulnerable: |
Bournal Bournal 1.4 |
| Not Vulnerable: |
Bournal Bournal 1.4.1 |
Discussion
Bournal Insecure Temporary File Creation Vulnerability
The 'Bournal' bash script creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.
Versions prior to Bournal 1.4.1 are affected.
The 'Bournal' bash script creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.
Versions prior to Bournal 1.4.1 are affected.
Exploit / POC
Bournal Insecure Temporary File Creation Vulnerability
An attacker uses readily available commands to exploit this issue.
An attacker uses readily available commands to exploit this issue.
Solution / Fix
Bournal Insecure Temporary File Creation Vulnerability
Solution:
Updates are available. Please see the references for details.
Bournal Bournal 1.4
Solution:
Updates are available. Please see the references for details.
Bournal Bournal 1.4
-
Bournal Bournal 1.4.1
http://freshmeat.net/urls/b7aec907d32a0ca601ce5ca5311dd9c3
References
Bournal Insecure Temporary File Creation Vulnerability
References:
References:
- Bournal Homepage (Boredy LaForge)
- Bournal Insecure Temporary Files Security Issue (Secunia)