Graphviz Insecure Temporary File Creation Vulnerability

Bugtraq ID: 15050
Class: Design Error
CVE: CVE-2005-2965
Remote: No
Local: Yes
Published: Oct 10 2005 12:00AM
Updated: May 17 2006 09:14PM
Credit: Javier Fernández-Sanguino Peña discovered this issue.
Vulnerable: Ubuntu Ubuntu Linux 5.0 4 powerpc
Ubuntu Ubuntu Linux 5.0 4 i386
Ubuntu Ubuntu Linux 5.0 4 amd64
Graphviz Graphviz 2.2.1
+ Debian Linux 3.1 sparc
+ Debian Linux 3.1 s/390
+ Debian Linux 3.1 ppc
+ Debian Linux 3.1 mipsel
+ Debian Linux 3.1 mips
+ Debian Linux 3.1 m68k
+ Debian Linux 3.1 ia-64
+ Debian Linux 3.1 ia-32
+ Debian Linux 3.1 hppa
+ Debian Linux 3.1 arm
+ Debian Linux 3.1 amd64
+ Debian Linux 3.1 alpha
+ Debian Linux 3.1
+ Mandriva Linux Mandrake 2006.0 x86_64
+ Mandriva Linux Mandrake 2006.0
Graphviz Graphviz 2.2
+ Mandriva Linux Mandrake 10.2 x86_64
+ Mandriva Linux Mandrake 10.2
Conectiva Linux 10.0
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus