CVE-2018-6706: McAfee Agent (MA) non-Windows versions incorrect use of temporary file vulnerability
Insecure handling of temporary files in non-Windows McAfee Agent 5.0.0 through 5.0.6, 5.5.0, and 5.5.1 allows an Unprivileged User to introduce custom paths during agent installation in Linux via unspecified vectors.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6706?
The severity of CVE-2018-6706 is high with a severity value of 7.5.
How does CVE-2018-6706 affect McAfee Agent?
CVE-2018-6706 affects non-Windows McAfee Agent versions 5.0.0 through 5.0.6, 5.5.0, and 5.5.1.
What is the vulnerability description of CVE-2018-6706?
CVE-2018-6706 is caused by insecure handling of temporary files in non-Windows McAfee Agent, allowing an Unprivileged User to introduce custom paths during agent installation in Linux.
Is there a fix available for CVE-2018-6706?
Yes, McAfee has released a fix for this vulnerability. Please refer to the McAfee knowledge base article for more information.
Where can I find more information about CVE-2018-6706?
You can find more information about CVE-2018-6706 on the SecurityFocus and McAfee websites.