6.2
CVSSv2

CVE-2001-0906

Published: 22/06/2001 Updated: 10/10/2017
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 625
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

teTeX filter prior to 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produced when printing .dvi files using lpr.

Vulnerable Product Search on Vulmon Subscribe to Product

tetex tetex

Exploits

/* source: wwwsecurityfocuscom/bid/2974/info teTeX is a TeX distribution for UNIX compatible systems A race condition vulnerability exists in the temporary file handling method used by some teTeX filters The problem exists because in some cases temporary files are created world-writeable with a predictable filename based on the process ...