Vulnerabilities > CVE-2007-2030 - Unspecified vulnerability in Redhat Enterprise Linux and Fedora Core

047910
CVSS 4.9 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
NONE
Availability impact
NONE
local
low complexity
redhat
nessus

Summary

lharc.c in lha does not securely create temporary files, which might allow local users to read or write files by creating a file before LHA is invoked.

Nessus

NASL familyMandriva Local Security Checks
NASL idMANDRAKE_MDKSA-2007-117.NASL
descriptionlharc.c in lha does not securely create temporary files, which might allow local users to read or write files by creating a file before LHA is invoked. Updated packages have been patched to prevent this issue.
last seen2020-06-01
modified2020-06-02
plugin id25441
published2007-06-07
reporterThis script is Copyright (C) 2007-2019 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/25441
titleMandrake Linux Security Advisory : lha (MDKSA-2007:117)

Statements

contributorJoshua Bressers
lastmodified2007-04-18
organizationRed Hat
statementRed Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=236585 The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here: http://www.redhat.com/security/updates/classification/