5
CVSSv2

CVE-2005-1920

Published: 26/07/2005 Updated: 25/01/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x up to and including 3.4.0 do not properly set the same permissions on the backup file as were set on the original file, which could allow local users and possibly remote malicious users to obtain sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

kde kde

debian debian linux 3.1

Vendor Advisories

Synopsis kdelibs security update Type/Severity Security Advisory: Moderate Topic Updated kdelibs packages are now available for Red Hat Enterprise Linux 4This update has been rated as having moderate security impact by the RedHat Security Response Team Description kdelibs contains librari ...
Kate and Kwrite create a backup file before saving a modified file These backup files were created with default permissions, even if the original file had more strict permissions set, so that other local users could possibly read the backup file even if they are not permitted to read the original file ...