[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2008:074 -- Mandriva audacity

ID: oval:org.secpod.oval:def:301574Date: (C)2012-01-07   (M)2022-02-08
Class: PATCHFamily: unix




Audacity creates a temporary directory with a predictable name without checking for previous existence of that directory, which allows local users to cause a denial of service by creating the directory before Audacity is run. This issue can also be leveraged to delete arbitrary files or directories via a symlink attack. The updated package fixes the issue.

Platform:
Mandriva Linux 2007.1
Mandriva Linux 2008.0
Product:
audacity
Reference:
MDVSA-2008:074
CVE-2007-6061
CVE    1
CVE-2007-6061
CPE    2
cpe:/o:mandriva:linux:2007.1
cpe:/o:mandriva:linux:2008.0

© SecPod Technologies