CVE-2000-1156: Low severity Sun StarOffice vulnerability
Published Dec 19, 2000
·Updated
StarOffice 5.2 follows symlinks and sets world-readable permissions for the /tmp/soffice.tmp directory, which allows a local user to read files of the user who is using StarOffice.
Affected Software
1 affected component
Sun StarOffice=5.2
Remediation
Patch Available
Event History
Dec 19, 2000
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1156?
CVE-2000-1156 is considered a medium severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2000-1156?
To fix CVE-2000-1156, ensure that the permissions on the /tmp/soffice.tmp directory are properly configured to restrict access.
3
Who is affected by CVE-2000-1156?
CVE-2000-1156 affects users of StarOffice 5.2 who allow other local users to access their session.
4
What type of vulnerability is CVE-2000-1156?
CVE-2000-1156 is a local file permission vulnerability that allows unauthorized access to sensitive files.
5
Can CVE-2000-1156 be exploited remotely?
No, CVE-2000-1156 can only be exploited by local users on the same machine.