CVE-2010-4765: Race Condition
Race condition in the Kernel::System::Main::FileWrite method in Open Ticket Request System (OTRS) before 2.4.8 allows remote authenticated users to corrupt the TicketCounter.log data in opportunistic circumstances by creating tickets.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4765?
CVE-2010-4765 is classified as a medium severity vulnerability due to its race condition allowing data corruption by remote authenticated users.
How do I fix CVE-2010-4765?
To fix CVE-2010-4765, upgrade to OTRS version 2.4.8 or later, as this version addresses the vulnerability.
What versions of OTRS are affected by CVE-2010-4765?
CVE-2010-4765 affects all OTRS versions prior to 2.4.8, including multiple beta versions.
What impact does CVE-2010-4765 have on OTRS?
CVE-2010-4765 can lead to corrupted TicketCounter.log data by allowing remote authenticated users to exploit the race condition.
Can CVE-2010-4765 be exploited remotely?
Yes, CVE-2010-4765 can be exploited by remote authenticated users when they create tickets under certain conditions.