Vulnerabilities > CVE-2005-0118 - Local Security vulnerability in Helvis

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
helvis
nessus

Summary

helvis 1.8h2_1 and earlier stores recovery files in world readable directories with world readable permissions, which allows local users to read the recovered files of other users.

Vulnerable Configurations

Part Description Count
Application
Helvis
1

Nessus

NASL familyFreeBSD Local Security Checks
NASL idFREEBSD_PKG_BB99F8035FDE11D9B72100065BE4B5B6.NASL
descriptionOnce a recovery file has been preserved by the setuid root elvprsv utility it is placed in a worldreadable directory with worldreadable permissions. This possibly allows sensitive information to leak. In addition to this information leak, it is possible for users to recover files that belong to other users by using elvrec, another setuid root binary.
last seen2020-06-01
modified2020-06-02
plugin id19099
published2005-07-13
reporterThis script is Copyright (C) 2005-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/19099
titleFreeBSD : helvis -- information leak vulnerabilities (bb99f803-5fde-11d9-b721-00065be4b5b6)