Alerts This Week
Warning Icon 1 905
Alerts This Week
Warning Icon 1 905

Gentoo GLSA-200604-13 Normal: Fbida Insecure Temporary File Attack

gentoo
Calendar Grey April 23, 2006
Dist Gentoo Esm H88
The Gentoo Security Advisory GLSA 200604-14 highlights vulnerabilities in the fbida toolchain that expose temporary files to overwrites, risking unauthorized access
fbida is vulnerable to linking attacks, potentially allowing a local user to overwrite arbitrary files.

Summary

Gentoo Linux Security Advisory GLSA 200604-13 https://security.gentoo.org/ Severity: Normal Title: fbida: Insecure temporary file creation Date: April 23, 2006 Bugs: #129470 ID: 200604-13

Synopsis ======= fbida is vulnerable to linking attacks, potentially allowing a local user to overwrite arbitrary files.
Background ========= fbida is a collection of image viewers and editors for the framebuffer console and X11.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-gfx/fbida < 2.03-r3 >= 2.03-r3
========== Jan Braun has discovered that the "fbgs" script provided by fbida insecurely creates temporary files in the "/var/tmp" directory.
Impact ===== A local...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here