Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-1069

Overview

Vulnerability Score 7.2 7.2
CVE Id CVE-2001-1069
Last Modified 10 Sep 2008 03:09:36
Published 31 Aug 2001 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2001-1069

Summary

libCoolType library as used in Adobe Acrobat (acroread) on Linux creates the AdobeFnt.lst file with world-writable permissions, which allows local users to modify the file and possibly modify acroread's behavior.

Vulnerable Systems

Application

  • Adobe Acrobat Reader 4.0.5


References

BID - 3225

BUGTRAQ - 20010822 Adobe Acrobat creates world writable ~/AdobeFnt.lst files

MISC - http://lists.debian.org/debian-security/2001/debian-security-200101/msg00085.html

XF - adobe-acrobat-insecure-permissions(7024)


Last Updated: 27 May 2016 10:36:30