CVE-2003-0924: Low severity netpbm netpbm vulnerability
Published Feb 17, 2004
·Updated
netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.
Affected Software
1 affected component
Netpbm netpbm<=9.25
Remediation
Patch Available
Patch Available
Event History
Feb 17, 2004
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-0924?
CVE-2003-0924 is considered a moderate severity vulnerability due to the potential for local users to overwrite arbitrary files.
2
How do I fix CVE-2003-0924?
To fix CVE-2003-0924, upgrade to a version of Netpbm later than 9.25 that properly handles temporary file creation.
3
Who is affected by CVE-2003-0924?
CVE-2003-0924 affects users of Netpbm version 9.25 and earlier.
4
What types of systems are vulnerable to CVE-2003-0924?
CVE-2003-0924 is vulnerable on any system where Netpbm versions 9.25 and earlier are installed.
5
What is the exploit method for CVE-2003-0924?
CVE-2003-0924 can be exploited locally by manipulating the temporary file creation process to overwrite sensitive files.