PT-2005-1028 · Crip · Crip
Justin Rye
·
Published
2005-07-01
·
Updated
2008-09-05
·
CVE-2005-0393
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
crip version 3.5
Description
The issue affects the helper scripts for crip, which do not properly use temporary files. This could allow local users to have an unknown impact. Additionally, there are multiple vulnerabilities in the crip package that can lead to breaches of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited by a local attacker.
Recommendations
For crip version 3.5, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Crip