|
|
| |
|
| |
libimobiledevice: file overwrite and device key access
| Package(s): | libimobiledevice |
CVE #(s): | CVE-2013-2142
|
| Created: | August 15, 2013 |
Updated: | August 21, 2013 |
| Description: |
From the Ubuntu advisory:
Paul Collins discovered that libimobiledevice incorrectly handled temporary
files. A local attacker could possibly use this issue to overwrite
arbitrary files and access device keys. In the default Ubuntu installation,
this issue should be mitigated by the Yama link restrictions. |
| Alerts: |
|
( Log in to post comments)
|
|
|