CVE-2013-1809
published 2019-11-07CVE-2013-1809: Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary…
PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
2.01%
78.9th percentile
Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | gambas3 | < gambas3 3.5.1-1 (bookworm) | gambas3 3.5.1-1 (bookworm) |
| gambas3 | gambas3 | — | — |
| gambas3 | gambas3 | >= 0 < 3.5.1-1 | 3.5.1-1 |
| gambas3 | gambas3 | >= 0 < 3.5.1-1 | 3.5.1-1 |
| gambas3 | gambas3 | >= 0 < 3.5.1-1 | 3.5.1-1 |
| gambas3 | gambas3 | >= 0 < 3.5.1-1 | 3.5.1-1 |
| gambas_project | gambas | < 3.4.0 | 3.4.0 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
osv7.5HIGH
vendor_debian7.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2013-1809: gambas3 - Gambas before 3.4.0 allows remote attackers to move or manipulate directory cont...
vendor_debian·2013·CVSS 7.5
CVE-2013-1809 [HIGH] CVE-2013-1809: gambas3 - Gambas before 3.4.0 allows remote attackers to move or manipulate directory cont...
Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
Scope: local
bookworm: resolved (fixed in 3.5.1-1)
bullseye: resolved (fixed in 3.5.1-1)
forky: resolved (fixed in 3.5.1-1)
sid: resolved (fixed in 3.5.1-1)
trixie: resolved (fixed in 3.5.1-1)
GHSA
GHSA-q2wp-fxf8-h3rv: Gambas before 3
ghsa_unreviewed·2022-05-05
CVE-2013-1809 [MEDIUM] GHSA-q2wp-fxf8-h3rv: Gambas before 3
Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
OSV
CVE-2013-1809: Gambas before 3
osv·2019-11-07·CVSS 7.5
CVE-2013-1809 [HIGH] CVE-2013-1809: Gambas before 3
Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
bugzilla·2013-03-04·CVSS 7.5
CVE-2013-1809 [HIGH] CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects m
Bugzilla
CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
bugzilla·2013-03-04·CVSS 7.5
CVE-2013-1809 [HIGH] CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects m
Bugzilla
CVE-2013-1809 gambas3: insecure temporary directories flaw
bugzilla·2013-03-04·CVSS 7.5
CVE-2013-1809 [HIGH] CVE-2013-1809 gambas3: insecure temporary directories flaw
CVE-2013-1809 gambas3: insecure temporary directories flaw
A flaw was reported [1] in gambas where it created temporary directories insecurely, by creating /tmp/gambas.UID where UID is the user ID of the person running gambas. It does not check if this directory already exists or what the permissions on the directory are. This could allow a malicious user to remove, move, or manipulate the contents of the directory.
This has been fixed upstream in r5464 [2] and r5438 [3].
The upstream report only refers to Gambas 3.x, and the code is quite different in Gambas 1.x (and presumably 2.x, didn't check), but Gambas 1.x does suffer from the same problem.
[1] https://code.google.com/p/gambas/issues/detail?id=365
[2] http://sourceforge.net/p/gambas/code/5464/
[3] http://sourceforge.net/p/gamba
Bugzilla
CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
bugzilla·2013-03-04·CVSS 7.5
CVE-2013-1809 [HIGH] CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
CVE-2013-1809 gambas3: insecure temporary directories flaw [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects m
http://www.openwall.com/lists/oss-security/2013/03/03/4https://access.redhat.com/security/cve/cve-2013-1809https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-1809https://code.google.com/archive/p/gambas/issues/365https://security-tracker.debian.org/tracker/CVE-2013-1809https://sourceforge.net/p/gambas/code/5438/http://www.openwall.com/lists/oss-security/2013/03/03/4https://access.redhat.com/security/cve/cve-2013-1809https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-1809https://code.google.com/archive/p/gambas/issues/365https://security-tracker.debian.org/tracker/CVE-2013-1809https://sourceforge.net/p/gambas/code/5438/
2019-11-07
Published