5
CVSSv2

CVE-2003-1139

Published: 27/10/2003 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Musicqueue 1.2.0 allows local users to overwrite arbitrary files by triggering a segmentation fault and using a symlink attack on the resulting musicqueue.crash file.

Vulnerable Product Search on Vulmon Subscribe to Product

musicqueue musicqueue 1.2

Exploits

source: wwwsecurityfocuscom/bid/8899/info A vulnerability has been reported for Musicqueue The problem specifically occurs within a signal handling procedure used invoked when a segmentation violation occurs The procedure invokes a library function, passing it the name of a predictable filename to create within the systems temporary dir ...