CVE-2019-12779

libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.

Summary:

libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.

Reference Links(if available):

  • https://github.com/ClusterLabs/libqb/releases/tag/v1.0.5
  • https://github.com/ClusterLabs/libqb/releases/tag/v1.0.4
  • https://github.com/ClusterLabs/libqb/issues/338
  • https://bugzilla.redhat.com/show_bug.cgi?id=1695948
  • http://www.securityfocus.com/bid/108691
  • CVSS Score (if available)

    v2: / MEDIUMAV:L/AC:L/Au:N/C:N/I:C/A:C

    v3: / HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

    Links to Exploits(if available)