Description
In Maxima through 5.47.0 before 51704c, the plotting facilities make use of predictable names under /tmp. Thus, the contents may be controlled by a local attacker who can create files in advance with these names. This affects, for example, plot2d.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://sourceforge.net/p/maxima/bugs/3755/ |
|
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T02:51:11.574Z
Reserved: 2024-05-05T00:00:00.000Z
Link: CVE-2024-34490
Updated: 2024-08-02T02:51:11.574Z
Status : Deferred
Published: 2024-05-05T03:15:07.293
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-34490
No data.
OpenCVE Enrichment
No data.
Weaknesses