CVE Vulnerabilities

CVE-2004-2303

Published: Dec 31, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.6 LOW
AV:L/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

MTools Mformat before 3.9.9, when installed setuid root, creates files with world-readable and world-writable permissions, which allows local users to read and overwrite files.

Affected Software

NameVendorStart VersionEnd Version
MformatMtools3.9.1 (including)3.9.1 (including)
MformatMtools3.9.2 (including)3.9.2 (including)
MformatMtools3.9.3 (including)3.9.3 (including)
MformatMtools3.9.4 (including)3.9.4 (including)
MformatMtools3.9.5 (including)3.9.5 (including)
MformatMtools3.9.6 (including)3.9.6 (including)
MformatMtools3.9.7 (including)3.9.7 (including)
MformatMtools3.9.8 (including)3.9.8 (including)
MformatMtools3.9.9 (including)3.9.9 (including)

References