CVE-2014-2524
published 2014-08-20CVE-2014-2524: The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a…
PriorityP49low3.3CVSS 2.0
AVLACMAuNCNIPAP
EPSS
0.43%
35.0th percentile
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | fedora | — | — |
| gnu | readline | <= 6.3 | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| gnu | readline | — | — |
| mageia | mageia | — | — |
| mageia | mageia | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:N/I:P/A:P
osv3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hq65-wq6g-7mcc: The _rl_tropen function in util
ghsa_unreviewed·2022-05-14
CVE-2014-2524 [LOW] CWE-59 GHSA-hq65-wq6g-7mcc: The _rl_tropen function in util
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
OSV
CVE-2014-2524: The _rl_tropen function in util
osv·2014-08-20·CVSS 3.3
CVE-2014-2524 [LOW] CVE-2014-2524: The _rl_tropen function in util
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
Red Hat
readline: insecure temporary file use in _rl_tropen()
vendor_redhat·2014-03-14·CVSS 3.3
CVE-2014-2524 [LOW] CWE-377 readline: insecure temporary file use in _rl_tropen()
readline: insecure temporary file use in _rl_tropen()
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
Statement: This issue is only exposed via readline's debugging/tracing code and is not used by readline or any other application in Red Hat Enterprise Linux. The tracing functions are defined in a private header file and are only meant for the readline library's internal use. In general use, there is no exposure of this insecure temporary file issue, and while this does affect the versions of readline as shipped with Red Hat Enterprise Linux 5, 6 and 7 it is not currently planned to be addressed in future updates.
Red Hat Product Security has rated this is
No detection rules found.
No public exploits indexed.
http://advisories.mageia.org/MGASA-2014-0319.htmlhttp://lists.gnu.org/archive/html/bug-readline/2014-03/msg00057.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.htmlhttp://seclists.org/oss-sec/2014/q1/579http://seclists.org/oss-sec/2014/q1/587http://www.mandriva.com/security/advisories?name=MDVSA-2014:154http://www.mandriva.com/security/advisories?name=MDVSA-2015:132https://bugzilla.redhat.com/show_bug.cgi?id=1077023https://lists.fedoraproject.org/pipermail/package-announce/2014-July/135686.htmlhttp://advisories.mageia.org/MGASA-2014-0319.htmlhttp://lists.gnu.org/archive/html/bug-readline/2014-03/msg00057.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.htmlhttp://seclists.org/oss-sec/2014/q1/579http://seclists.org/oss-sec/2014/q1/587http://www.mandriva.com/security/advisories?name=MDVSA-2014:154http://www.mandriva.com/security/advisories?name=MDVSA-2015:132https://bugzilla.redhat.com/show_bug.cgi?id=1077023https://lists.fedoraproject.org/pipermail/package-announce/2014-July/135686.html
2014-08-20
Published