GLSA Advocate
![Advocate Advocate](/images/ranks/rank-G-1-advocate.gif)
Joined: 12 May 2004 Posts: 2663
|
Posted: Wed Sep 09, 2009 7:26 pm Post subject: [ GLSA 200909-08 ] C* music player: Insecure temporary file |
|
|
Gentoo Linux Security Advisory
Title: C* music player: Insecure temporary file usage (GLSA 200909-08)
Severity: normal
Exploitable: local
Date: September 09, 2009
Bug(s): #250474
ID: 200909-08
Synopsis
An insecure temporary file usage has been reported in the C* music player,
allowing for symlink attacks.
Background
The C* Music Player (cmus) is a modular and very configurable
ncurses-based audio player.
Affected Packages
Package: media-sound/cmus
Vulnerable: < 2.2.0-r1
Unaffected: >= 2.2.0-r1
Architectures: All supported architectures
Description
Dmitry E. Oboukhov reported that cmus-status-display does not handle
the "/tmp/cmus-status" temporary file securely.
Impact
A local attacker could perform symlink attacks to overwrite arbitrary
files with the privileges of the user running the application.
Workaround
There is no known workaround at this time.
Resolution
All C* music player users should upgrade to the latest version:
Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=media-sound/cmus-2.2.0-r1" |
References
CVE-2008-5375
Last edited by GLSA on Sun Nov 22, 2009 4:29 am; edited 1 time in total |
|