The installation of J-Pilot creates the .jpilot directory with the user's umask, which could allow local attackers to read other users' PalmOS backup information if their umasks are not securely set.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/5762 | vdb entry |
http://www.securityfocus.com/templates/archive.pike?mid=150957&end=2001-02-03&fromthread=1&start=2001-01-28&threads=0&list=1& | mailing list vendor advisory |
http://www.linux-mandrake.com/en/security/2000/MDKSA-2000-081.php3 | patch vendor advisory |