7.2
CVSSv2

CVE-2005-1853

Published: 03/08/2005 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

university of minnesota gopher 3.0.5

Vendor Advisories

John Goerzen discovered that gopher, a client for the Gopher Distributed Hypertext protocol, creates temporary files in an insecure fashion For the old stable distribution (woody) this problem has been fixed in version 303woody3 For the stable distribution (sarge) this problem has been fixed in version 307sarge1 For the unstable distribution ...