OpenStack PackStack CVE-2013-0261 Multiple Insecure Temporary File Creation Vulnerabilities
BID:58506
Info
OpenStack PackStack CVE-2013-0261 Multiple Insecure Temporary File Creation Vulnerabilities
| Bugtraq ID: | 58506 |
| Class: | Design Error |
| CVE: |
CVE-2013-0261 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 05 2013 12:00AM |
| Updated: | Feb 05 2013 12:00AM |
| Credit: | Kurt Seifried of the Red Hat Security Response Team |
| Vulnerable: |
Redhat OpenStack Folsom 0 Redhat OpenStack Essex 0 OpenStack PackStack 0 |
| Not Vulnerable: | |
Discussion
OpenStack PackStack CVE-2013-0261 Multiple Insecure Temporary File Creation Vulnerabilities
OpenStack PackStack is prone to multiple insecure temporary-file-creation vulnerabilities.
A local attacker could potentially perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application. Other attacks may also be possible.
OpenStack PackStack is prone to multiple insecure temporary-file-creation vulnerabilities.
A local attacker could potentially perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application. Other attacks may also be possible.
Solution / Fix
OpenStack PackStack CVE-2013-0261 Multiple Insecure Temporary File Creation Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.