PT-2019-6802 · Netbsd · Isearch
David Holland
·
Published
2019-12-30
·
Updated
2020-01-10
·
CVE-2012-5663
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
isearch versions prior to 1.47.01nb1
Description
The issue concerns the creation of insecure temporary files in a publicly-writable area, specifically /tmp, due to the use of the tempnam() function.
Recommendations
For versions prior to 1.47.01nb1, update to version 1.47.01nb1 or later to resolve the issue.
Exploit
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Isearch