1.2
CVSSv2

CVE-2005-3011

Published: 21/09/2005 Updated: 19/10/2018
CVSS v2 Base Score: 1.2 | Impact Score: 2.9 | Exploitability Score: 1.9
VMScore: 107
Vector: AV:L/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

The sort_offline function for texindex in texinfo 4.8 and previous versions allows local users to overwrite arbitrary files via a symlink attack on temporary files.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu texinfo

Vendor Advisories

Frank Lichtenheld discovered that the “texindex” program created temporary files in an insecure manner This could allow a symlink attack to create or overwrite arbitrary files with the privileges of the user running texindex ...

References

CWE-59http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=328365http://www.securityfocus.com/bid/14854http://www.mandriva.com/security/advisories?name=MDKSA-2005:175http://lists.trustix.org/pipermail/tsl-announce/2005-October/000354.htmlhttp://www.ubuntu.com/usn/usn-194-1ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:01.texindex.aschttp://securitytracker.com/id?1015468http://securitytracker.com/id?1014992http://secunia.com/advisories/16816http://secunia.com/advisories/18401http://www.gentoo.org/security/en/glsa/glsa-200510-04.xmlhttp://www.novell.com/linux/security/advisories/2005_23_sr.htmlhttp://secunia.com/advisories/17070http://secunia.com/advisories/17076http://secunia.com/advisories/17093http://secunia.com/advisories/17211http://secunia.com/advisories/17215http://www.redhat.com/support/errata/RHSA-2006-0727.htmlftp://patches.sgi.com/support/free/security/advisories/20061101-01-Phttp://secunia.com/advisories/22929http://www.debian.org/security/2006/dsa-1219http://secunia.com/advisories/23112http://www.vmware.com/support/vi3/doc/esx-1121906-patch.htmlhttp://www.vmware.com/support/vi3/doc/esx-2559638-patch.htmlhttp://secunia.com/advisories/24788http://docs.info.apple.com/article.html?artnum=305530http://lists.apple.com/archives/security-announce/2007/May/msg00004.htmlhttp://secunia.com/advisories/25402http://www.vupen.com/english/advisories/2007/1939http://www.vupen.com/english/advisories/2007/1267https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10589http://www.securityfocus.com/archive/1/464745/100/0/threadedhttps://usn.ubuntu.com/194-1/https://nvd.nist.gov