generate_doygen.pl in ace before 6.2.7+dfsg-2 creates predictable file names in the /tmp directory which allows attackers to gain elevated privileges.
The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.
Link | Tags |
---|---|
https://security-tracker.debian.org/tracker/CVE-2014-6311 | third party advisory |
http://www.openwall.com/lists/oss-security/2014/09/12/6 | third party advisory mailing list |
http://www.openwall.com/lists/oss-security/2014/09/11/5 | third party advisory mailing list |
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=760709 | third party advisory |