CVE-2003-0596

high

Description

FDclone 2.00a, and other versions before 2.02a, creates temporary directories with predictable names and uses them if they already exist, which allows local users to read or modify files of other fdclone users by creating the directory ahead of time.

References

https://www.debian.org/security/2003/dsa-352

http://bugs.debian.org/cgi-bin/bugreport.cgi?archive=no&bug=186219

Details

Source: Mitre, NVD

Published: 2003-08-27

Updated: 2016-12-08

Risk Information

CVSS v2

Base Score: 3.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:N

Severity: Low

CVSS v3

Base Score: 7.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Severity: High