as31 2.3.1-4 does not seed the random number generator and generates predictable temporary file names, which makes it easier for local users to create or truncate files via a symlink attack.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Name | Vendor | Start Version | End Version |
---|---|---|---|
As31 | Bdale_garbee | 2.3.1-4 (including) | 2.3.1-4 (including) |
As31 | Ubuntu | lucid | * |
As31 | Ubuntu | maverick | * |
As31 | Ubuntu | natty | * |
As31 | Ubuntu | oneiric | * |
As31 | Ubuntu | precise | * |
As31 | Ubuntu | upstream | * |