Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-4207 | Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there. |
Ubuntu USN |
USN-7211-1 | Audacity vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T11:42:00.675Z
Reserved: 2020-04-17T00:00:00
Link: CVE-2020-11867
No data.
Status : Modified
Published: 2020-11-30T22:15:10.713
Modified: 2024-11-21T04:58:47.223
Link: CVE-2020-11867
No data.
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN