CVE-2005-1914: Low severity centericq vulnerability
CenterICQ 4.20.0 and earlier creates temporary files with predictable file names, which allows local users to overwrite arbitrary files via a symlink attack on the gg.token.PID temporary file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1914?
CVE-2005-1914 has a high severity rating due to the potential for local users to exploit the symlink vulnerability to overwrite arbitrary files.
How do I fix CVE-2005-1914?
To fix CVE-2005-1914, update to a version of CenterICQ that no longer creates predictable temporary file names.
What versions of CenterICQ are affected by CVE-2005-1914?
CVE-2005-1914 affects CenterICQ versions 4.20.0 and earlier, including multiple variants of earlier versions.
What type of attack is associated with CVE-2005-1914?
CVE-2005-1914 is associated with a symlink attack that can result in the overwriting of files.
Who is impacted by CVE-2005-1914?
Local users on systems running affected versions of CenterICQ are at risk of exploitation due to CVE-2005-1914.