First published: Mon Sep 14 2009(Updated: )
Directory traversal vulnerability in DeviceKit-disks in DeviceKit, as used in Fedora 11 and 12 and possibly other operating systems, allows local users to gain privileges via .. (dot dot) sequences in the label for a pluggable storage device.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Fedora | =11 | |
Fedora | =12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0746 is considered a moderate severity vulnerability due to its potential for local privilege escalation.
To fix CVE-2010-0746, update to the latest version of DeviceKit that addresses the directory traversal vulnerability.
CVE-2010-0746 primarily affects users of Fedora versions 11 and 12, where DeviceKit is utilized.
CVE-2010-0746 is classified as a directory traversal vulnerability that allows unauthorized access through file path manipulation.
CVE-2010-0746 cannot be exploited remotely but requires local access to the system to exploit the privilege escalation.