In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file.
Medium CVSS 4.7
Summary
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612032 Exploit
- https://bugs.launchpad.net/ubuntu/+source/tesseract/+bug/607297 Exploit
- https://security-tracker.debian.org/tracker/CVE-2011-1136 Third Party Advisory
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612032 Exploit
- https://bugs.launchpad.net/ubuntu/+source/tesseract/+bug/607297 Exploit
- https://security-tracker.debian.org/tracker/CVE-2011-1136 Third Party Advisory
Timeline
- nvd_ingest NVD