CVE-2014-2524
Published Aug 20, 2014
Last updated 6 years ago
Overview
- Description
- The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.3
- Impact score
- 4.9
- Exploitability score
- 3.4
- Vector string
- AV:L/AC:M/Au:N/C:N/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-59
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:mageia:mageia:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76F1E356-E019-47E8-AA5F-702DA93CF74E" }, { "criteria": "cpe:2.3:o:mageia:mageia:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F805A106-9A6F-48E7-8582-D3C5A26DFC11" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:gnu:readline:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BCAD25A-3DBB-43F3-B5B7-5DF6742095D5", "versionEndIncluding": "6.3" }, { "criteria": "cpe:2.3:a:gnu:readline:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "296B4AF4-38DF-45F4-BE15-8735F9E31D3E" }, { "criteria": "cpe:2.3:a:gnu:readline:2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21398E40-282A-48FC-8576-A6E8665E46E6" }, { "criteria": "cpe:2.3:a:gnu:readline:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B9C14829-D4DE-4D8E-B7F9-E45C3E32A32D" }, { "criteria": "cpe:2.3:a:gnu:readline:4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "278DFB21-7C51-415F-B298-03A2778D6CE6" }, { "criteria": "cpe:2.3:a:gnu:readline:4.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78C36069-3C51-48A6-A628-304962F4B8D2" }, { "criteria": "cpe:2.3:a:gnu:readline:4.2:a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "089403A9-D5AF-4313-981F-5541FE42D40D" }, { "criteria": "cpe:2.3:a:gnu:readline:4.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8253B587-80FB-475A-B089-8E7C03E69780" }, { "criteria": "cpe:2.3:a:gnu:readline:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "828A8311-0925-4400-B883-777A1F83DB10" }, { "criteria": "cpe:2.3:a:gnu:readline:5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64BA0EFC-3660-453B-96C4-CC5A8E98DC87" }, { "criteria": "cpe:2.3:a:gnu:readline:5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D2F4ACC-1C60-40E0-B783-006A5D617336" }, { "criteria": "cpe:2.3:a:gnu:readline:6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AD372FD8-2FE3-434A-9EEF-E6E2CB940FC0" }, { "criteria": "cpe:2.3:a:gnu:readline:6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2434545A-2C38-48EE-9190-733FDB31FCB9" }, { "criteria": "cpe:2.3:a:gnu:readline:6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0456034-7EB9-4AC9-907D-80F38C7B1D36" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFBF430B-0832-44B0-AA0E-BA9E467F7668" }, { "criteria": "cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A10BC294-9196-425F-9FB0-B1625465B47F" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FF47C9F0-D8DA-4B55-89EB-9B2C9383ADB9" } ], "operator": "OR" } ] } ]