Cscope Insecure Temporary File Creation Vulnerabilities

Bugtraq ID: 11697
Class: Design Error
CVE: CVE-2004-0996
Remote: No
Local: Yes
Published: Nov 17 2004 12:00AM
Updated: Aug 02 2007 05:25PM
Credit: Gangstuck / Psirac <research@rexotec.com> disclosed this vulnerability. Jeremy Bae from STG Security Inc <swbae@stgsecurity.com> also disclosed this vulnerability to the vendor.
Vulnerable: SCO Unixware 7.1.4
SCO Unixware 7.1.3
SCO Unixware 7.1.1
Gentoo Linux
Debian Linux 3.0 sparc
Debian Linux 3.0 s/390
Debian Linux 3.0 ppc
Debian Linux 3.0 mipsel
Debian Linux 3.0 mips
Debian Linux 3.0 m68k
Debian Linux 3.0 ia-64
Debian Linux 3.0 ia-32
Debian Linux 3.0 hppa
Debian Linux 3.0 arm
Debian Linux 3.0 alpha
Debian Linux 3.0
Cscope Cscope 15.5
+ SCO Open Server 5.0.7
+ SCO Open Server 5.0.6
Cscope Cscope 15.4
Cscope Cscope 15.3
Cscope Cscope 15.1
Cscope Cscope 13.0
Apple Mac OS X Server 10.4.10
Apple Mac OS X Server 10.3.9
Apple Mac OS X 10.4.10
Apple Mac OS X 10.3.9
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus