|
|
| |
|
| |
minitube: insecure tmp file handling
| Package(s): | minitube |
CVE #(s): | |
| Created: | March 16, 2012 |
Updated: | March 21, 2012 |
| Description: |
From the Gentoo advisory:
Tomáš Pružina reported that Minitube does not handle temporary files
securely.
A local attacker could perform symlink attacks to overwrite arbitrary
files with the privileges of the user running the application.
|
| Alerts: |
|
( Log in to post comments)
|
|
|