Vulnerabilities > CVE-2001-0067 - Unspecified vulnerability in Judd Montgomery Jpilot
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN judd-montgomery
nessus
Summary
The installation of J-Pilot creates the .jpilot directory with the user's umask, which could allow local attackers to read other users' PalmOS backup information if their umasks are not securely set.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Mandriva Local Security Checks |
NASL id | MANDRAKE_MDKSA-2000-081.NASL |
description | The jpilot program automatically creates a directory called .jpilot/ in the user |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 61867 |
published | 2012-09-06 |
reporter | This script is Copyright (C) 2012-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/61867 |
title | Mandrake Linux Security Advisory : jpilot (MDKSA-2000:081) |
code |
|
References
- http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-081.php3
- http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-081.php3
- http://www.securityfocus.com/templates/archive.pike?mid=150957&end=2001-02-03&fromthread=1&start=2001-01-28&threads=0&list=1&
- http://www.securityfocus.com/templates/archive.pike?mid=150957&end=2001-02-03&fromthread=1&start=2001-01-28&threads=0&list=1&
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5762
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5762