CVE-2014-3431
Published Jun 21, 2014
Last updated 8 years ago
Overview
- Description
- Symantec PGP Desktop 10.x, and Encryption Desktop Professional 10.3.x before 10.3.2 MP2, on OS X uses world-writable permissions for temporary files, which allows local users to bypass intended restrictions on file reading, modification, creation, and permission changes via unspecified vectors.
- Source
- secure@symantec.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 6.4
- Exploitability score
- 3.1
- Vector string
- AV:L/AC:L/Au:S/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:symantec:encryption_desktop:10.3.0:*:*:*:professional:*:*:*", "vulnerable": true, "matchCriteriaId": "E73390D3-3DE8-43AB-980F-0885A6C57A08" }, { "criteria": "cpe:2.3:a:symantec:encryption_desktop:10.3.1:*:*:*:professional:*:*:*", "vulnerable": true, "matchCriteriaId": "C641BF3B-033C-4E89-99D1-D0279176E85B" }, { "criteria": "cpe:2.3:a:symantec:encryption_desktop:10.3.2:-:*:*:professional:*:*:*", "vulnerable": true, "matchCriteriaId": "D80F9A3B-E810-422C-9168-B58ADC983A9F" }, { "criteria": "cpe:2.3:a:symantec:encryption_desktop:10.3.2:mp1:*:*:professional:*:*:*", "vulnerable": true, "matchCriteriaId": "64884C14-9E0D-4C8E-802E-D373DE80A506" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1EBF6909-8372-4264-8510-53482589D3D4" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7A873C35-C480-4A3D-A0B2-5BDAF794B80C" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8D7928F8-9E18-495B-AF0A-FE64B3CA88A0" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "59BEA5BE-2595-4BE5-B0CC-405748925F9E" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EFA810A7-C21B-4314-88CE-CC0018D6209F" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D6C464E-45C2-44B7-B474-4165C7FF9FE7" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38F4B912-92AA-4438-80EE-C3C46775D59C" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E5D7E1B-44AE-4EB7-940C-7010D92A1CFC" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B704ED7-8438-4BCF-B062-5303C3D9CAAB" }, { "criteria": "cpe:2.3:a:symantec:pgp_desktop:10.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "01D5E4E1-B128-4E77-A137-BA435082720C" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0FF5999A-9D12-4CDD-8DE9-A89C10B2D574" } ], "operator": "OR" } ], "operator": "AND" } ]