mpeg-tools before 1.5b-r2 creates multiple temporary files insecurely, which allows local users to overwrite arbitrary files via (1) ts.stat, (2) ts.mpg, (3) foobar, (4) blockbar, or (5) foobar[NNN].
References
Configurations
Information
Published : 2005-09-30 11:05
Updated : 2008-09-05 13:53
NVD link : CVE-2005-3115
Mitre link : CVE-2005-3115
JSON object : View
CWE
Products Affected
mpeg-tools
- mpeg-tools