CVE Vulnerabilities

CVE-2005-3268

Published: Oct 20, 2005 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

yiff server (yiff-server) 2.14.2 on Debian GNU/Linux runs as root and does not properly verify ownership of files that it opens, which allows local users to read arbitrary files.

Affected Software

Name Vendor Start Version End Version
Yiff_server Raphael_bossek 2.14.2.7 (including) 2.14.2.7 (including)
Yiff Ubuntu dapper *
Yiff Ubuntu devel *
Yiff Ubuntu edgy *
Yiff Ubuntu feisty *
Yiff Ubuntu gutsy *

References