Lucene search

K
cveMitreCVE-2009-1215
HistoryApr 01, 2009 - 10:30 a.m.

CVE-2009-1215

2009-04-0110:30:00
CWE-362
mitre
web.nvd.nist.gov
31
2
cve-2009-1215
gnu screen
race condition
symlink attack
file overwrite
nvd

CVSS2

1.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

5.1%

Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via a symlink attack on the /tmp/screen-exchange temporary file.

Affected configurations

Nvd
Node
gnugnu_screenMatch4.0.3
VendorProductVersionCPE
gnugnu_screen4.0.3cpe:2.3:a:gnu:gnu_screen:4.0.3:*:*:*:*:*:*:*

Social References

More

CVSS2

1.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

5.1%