Description
libclamav/others.c in ClamAV before 0.90.3 and 0.91 before 0.91rc1 uses insecure permissions for temporary files that are created by the cli_gentempstream function in clamd/clamdscan, which might allow local users to read sensitive files.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1320-1 | New clamav packages fix several vulnerabilities |
EUVD |
EUVD-2007-3016 | libclamav/others.c in ClamAV before 0.90.3 and 0.91 before 0.91rc1 uses insecure permissions for temporary files that are created by the cli_gentempstream function in clamd/clamdscan, which might allow local users to read sensitive files. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T13:57:55.119Z
Reserved: 2007-06-04T00:00:00.000Z
Link: CVE-2007-3024
No data.
Status : Modified
Published: 2007-06-07T22:30:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2007-3024
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD