PT-2019-6562 · Babiloo · Babiloo

Jakub Wilk

·

Published

2019-11-12

·

Updated

2019-11-14

·

CVE-2010-3440

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions babiloo versions 2.0.9 through 2.0.10
Description The issue allows a local attacker to overwrite arbitrary files due to the creation of temporary files with predictable names when downloading and unpacking dictionary files.
Recommendations For versions 2.0.9 through 2.0.10, update to version 2.0.11 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-3440

Affected Products

Babiloo