PT-2005-1028 · Crip · Crip

Justin Rye

·

Published

2005-07-01

·

Updated

2008-09-05

·

CVE-2005-0393

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions crip version 3.5
Description The issue affects the helper scripts for crip, which do not properly use temporary files. This could allow local users to have an unknown impact. Additionally, there are multiple vulnerabilities in the crip package that can lead to breaches of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited by a local attacker.
Recommendations For crip version 3.5, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-02953
CVE-2005-0393
DSA-733-1

Affected Products

Crip