Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2009-3274
StatusCandidate
DescriptionMozilla Firefox 3.6a1, 3.5.2, and earlier 2.x and 3.x versions on Linux uses a predictable /tmp pathname for files selected from the Downloads window, which allows local users to replace an arbitrary downloaded file by placing a file in a /tmp location before the download occurs, possibly related to the Archive Manager component. NOTE: some of these details are obtained from third party information.
SeverityMedium
CVSS score4,4
CVSS vector(AV:L/AC:M/Au:N/C:P/I:P/A:P)
PhaseAssigned (21.08.2010)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-3274
ReferencesMISC : http://jbrownsec.blogspot.com/2009/09/vamos-update...
 MISC : http://securitytube.net/Zero-Day-Demos-(Firefox-Vu...
 SECUNIA : 36649
SecurityVulns:Mozilla Firefox / Seamonkey multiple security vulnerabilities

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server