CVE-2005-0578: Low severity Mozilla Firefox vulnerability
Firefox before 1.0.1 and Mozilla Suite before 1.7.6 use a predictable filename for the plugin temporary directory, which allows local users to delete arbitrary files of other users via a symlink attack on the plugtmp directory.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0578?
CVE-2005-0578 is considered a moderate severity vulnerability due to its potential for local file deletion through a symlink attack.
How do I fix CVE-2005-0578?
To fix CVE-2005-0578, you should upgrade to Firefox version 1.0.1 or Mozilla Suite version 1.7.6 or later.
Which versions of Firefox are affected by CVE-2005-0578?
CVE-2005-0578 affects Firefox versions prior to 1.0.1.
Can local users exploit CVE-2005-0578?
Yes, local users can exploit CVE-2005-0578 to delete arbitrary files of other users if they have access to the affected systems.
Are both Firefox and Mozilla Suite vulnerable to CVE-2005-0578?
Yes, both Firefox prior to version 1.0.1 and Mozilla Suite prior to version 1.7.6 are vulnerable to CVE-2005-0578.