4.6
CVSSv2

CVE-2003-0261

Published: 27/05/2003 Updated: 10/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

fuzz 0.6 and previous versions creates temporary files insecurely, which could allow local users to gain root privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

fuzz fuzz

Vendor Advisories

Joey Hess discovered that fuzz, a software stress-testing tool, creates a temporary file without taking appropriate security precautions This bug could allow an attacker to gain the privileges of the user invoking fuzz, excluding root (fuzz does not allow itself to be invoked as root) For the stable distribution (woody) this problem has been fixe ...