CVE-2011-4328
published 2012-06-16CVE-2011-4328: plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users…
PriorityP419medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.13%
79.8th percentile
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gnu | gnash | <= 0.8.9 | — |
| gnu | gnash | — | — |
| gnu | gnash | — | — |
| gnu | gnash | — | — |
| gnu | gnash | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-4328 gnash: Unsafe management of HTTP cookies [fedora-all]
bugzilla·2011-11-21·CVSS 5.0
CVE-2011-4328 [MEDIUM] CVE-2011-4328 gnash: Unsafe management of HTTP cookies [fedora-all]
CVE-2011-4328 gnash: Unsafe management of HTTP cookies [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=75
Bugzilla
CVE-2011-4328 gnash: Unsafe management of HTTP cookies
bugzilla·2011-11-21·CVSS 5.0
CVE-2011-4328 [MEDIUM] CVE-2011-4328 gnash: Unsafe management of HTTP cookies
CVE-2011-4328 gnash: Unsafe management of HTTP cookies
A security flaw was found in the way Shockwave Flash plug-in of the gnash, a GNU flash movie player, performed management of HTTP cookies (they were stored under /tmp directory with world-readable permissions). A local attacker could use this flaw to obtain sensitive information.
References:
[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=649384
Discussion:
This issue affects the versions of the gnash package, as shipped with Fedora release of 14, 15, and 16. Please schedule an update (once final upstream patch known).
---
Created gnash tracking bugs for this issue
Affects: fedora-all [bug 755520]
---
CVE request:
[2] http://www.openwall.com/lists/oss-security/2011/11/21/7
---
The CVE identifier of CVE-2011-4328 has bee
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=649384http://git.savannah.gnu.org/gitweb/?p=gnash.git%3Ba=commitdiff%3Bh=fa481c116e65ccf9137c7ddc8abc3cf05dc12f55http://lists.opensuse.org/opensuse-updates/2012-03/msg00003.htmlhttp://lists.opensuse.org/opensuse-updates/2012-03/msg00026.htmlhttp://secunia.com/advisories/48325http://secunia.com/advisories/48466http://www.debian.org/security/2012/dsa-2435http://www.openwall.com/lists/oss-security/2011/11/21/12http://www.openwall.com/lists/oss-security/2011/11/21/7http://www.osvdb.org/77243http://www.securityfocus.com/bid/50747https://bugzilla.redhat.com/show_bug.cgi?id=755518http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=649384http://git.savannah.gnu.org/gitweb/?p=gnash.git%3Ba=commitdiff%3Bh=fa481c116e65ccf9137c7ddc8abc3cf05dc12f55http://lists.opensuse.org/opensuse-updates/2012-03/msg00003.htmlhttp://lists.opensuse.org/opensuse-updates/2012-03/msg00026.htmlhttp://secunia.com/advisories/48325http://secunia.com/advisories/48466http://www.debian.org/security/2012/dsa-2435http://www.openwall.com/lists/oss-security/2011/11/21/12http://www.openwall.com/lists/oss-security/2011/11/21/7http://www.osvdb.org/77243http://www.securityfocus.com/bid/50747https://bugzilla.redhat.com/show_bug.cgi?id=755518
2012-06-16
Published