CVE-2004-0996: Low severity Cscope cscope vulnerability
Published Dec 1, 2004
·Updated
main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
Affected Software
21 affected components
Cscope cscope=15.5
Cscope cscope=15.3
Cscope cscope=13.0
Cscope cscope=15.1
Cscope cscope=15.4
SCO UnixWare=7.1.3
SCO UnixWare=7.1.4
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Debian Debian Linux=3.0
SCO UnixWare=7.1.1
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Gentoo Linux
Debian Debian Linux=3.0
Debian Debian Linux=3.0
Remediation
Patch Available
Patch Available
Event History
Dec 1, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0996?
CVE-2004-0996 is considered a medium severity vulnerability due to its potential for local exploitation via a symlink attack.
2
How do I fix CVE-2004-0996?
To fix CVE-2004-0996, update to a version of cscope that addresses the predictable temporary file creation.
3
Which versions of cscope are affected by CVE-2004-0996?
CVE-2004-0996 affects cscope versions 13.0, 15.1, 15.4, and 15.5.
4
Can local users exploit CVE-2004-0996?
Yes, local users can exploit CVE-2004-0996 to overwrite arbitrary files through a symlink attack.
5
Is CVE-2004-0996 platform specific?
CVE-2004-0996 is not platform specific but affects various Unix-like operating systems and versions of cscope.