4.6

CVE-2005-0069

The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Vim Development GroupVim Version6.3.011
Vim Development GroupVim Version6.3.025
Vim Development GroupVim Version6.3.030
Vim Development GroupVim Version6.3.044
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.36% 0.276
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.redhat.com/support/errata/RHSA-2005-036.html
Patch
Vendor Advisory
https://bugzilla.fedora.us/show_bug.cgi?id=2343
Vendor Advisory
http://marc.info/?l=bugtraq&m=110608387001863&w=2
http://secunia.com/advisories/13841/
Patch
Vendor Advisory
http://securitytracker.com/id?1012938
http://www.redhat.com/support/errata/RHSA-2005-122.html
Patch
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/18870
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9402