Unsafe temporary file creation
Bug #678665 reported by
Bruno Postle
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Hugin |
Fix Released
|
Critical
|
Unassigned |
Bug Description
Pasted from the redhat bugzilla:
Hugin was reported to create temporary / debug files in unsafe manner. During the optimizer run, it creates debug output file with pre-defined name: /tmp/hugin_
This problem can be abused by malicious local user to perform symlink attack against user running hugin, which will result in overwrite of arbitrary file writable by user running hugin with panorama optimizer output.
There does not seem to be any upstream patch at the moment. Updated package was released for openSuSE, which resolves this problem by disabling creation of debug file.
CVE References
To post a comment you must log in.
Logged In: YES
user_id=35360
Originator: YES
It has a very official looking CVE 'sponsored by the Department of Homeland Security':
http:// nvd.nist. gov/nvd. cfm?cvename= CVE-2007- 5200