PT-2007-6869 · Tex · Tetex+1
Lubomir Kundrak
·
Publicado
2007-11-13
·
Atualizado
2018-10-15
·
CVE-2007-5936
CVSS v2.0
3.6
Baixa
| Vetor | AV:L/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
teTeX versions prior to 2007
TeXlive versions prior to 2007
Description
The issue allows local users to obtain sensitive information and modify certain data by creating specific temporary files before they are processed by dviljk, which can then be read or modified in place.
Recommendations
For teTeX versions prior to 2007, update to a version newer than 2007 to resolve the issue.
For TeXlive versions prior to 2007, update to a version newer than 2007 to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Tex Live
Tetex