2.1
CVSSv2

CVE-2003-0381

Published: 24/07/2003 Updated: 05/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple vulnerabilities in noweb 2.9 and previous versions creates temporary files insecurely, which allows local users to overwrite arbitrary files via multiple vectors including the noroff script.

Vulnerable Product Search on Vulmon Subscribe to Product

norman ramsey noweb

Vendor Advisories

Jakob Lell discovered a bug in the 'noroff' script included in noweb whereby a temporary file was created insecurely During a review, several other instances of this problem were found and fixed Any of these bugs could be exploited by a local user to overwrite arbitrary files owned by the user invoking the script For the stable distribution (woo ...