Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-6061
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6061

Description:
Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which allows local users to cause a denial of service (recording deadlock) by creating the directory before Audacity is run. NOTE: this issue can be leveraged to delete arbitrary files or directories via a symlink attack.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA27841
  Secunia Advisory: SA29206
  Secunia Advisory: SA30191

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:074

GENTOO
  http://security.gentoo.org/glsa/glsa-200803-03.xml

FEDORA

CONFIRM
  http://bugs.gentoo.org/show_bug.cgi?id=199751

BID
  26608


Return to the previous page.