libclamav/others.c in ClamAV before 0.90.3 and 0.91 before 0.91rc1 uses insecure permissions for temporary files that are created by the cli_gentempstream function in clamd/clamdscan, which might allow local users to read sensitive files.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-06-07T22:00:00
Updated: 2024-08-07T13:57:55.119Z
Reserved: 2007-06-04T00:00:00
Link: CVE-2007-3024
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2007-06-07T22:30:00.000
Modified: 2008-09-05T21:24:38.610
Link: CVE-2007-3024
Redhat
No data.