3.6
CVSSv2

CVE-2002-2334

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
VMScore: 320
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Joe text editor 2.8 up to and including 2.9.7 does not remove the group and user setuid bits for backup files, which could allow local users to execute arbitrary setuid and setgid root programs when root edits scripts owned by other users.

Vulnerable Product Search on Vulmon Subscribe to Product

joseph allen joe 2.8

joseph allen joe 2.9.5

joseph allen joe 2.9.7

joseph allen joe 2.9

joseph allen joe 2.9.1

joseph allen joe 2.9.2

joseph allen joe 2.9.4

joseph allen joe 2.9.6