159 lines
5.0 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2005-1920",
"sourceIdentifier": "secalert@redhat.com",
"published": "2005-07-26T04:00:00.000",
"lastModified": "2018-10-19T15:32:02.770",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the backup file as were set on the original file, which could allow local users and possibly remote attackers to obtain sensitive information."
},
{
"lang": "es",
"value": "Las aplicaciones Kate y Kwrite en KDE 3.2.x hasta la 3.4.0 no fijan adecuadamente los permisos en los ficheros de backup, lo que podr\u00eda permitir que usuarios locales, y posiblemente tambi\u00e9n remotos, obtengan informaci\u00f3n confidencial."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 5.0
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.2:*:*:*:*:*:*:*",
"matchCriteriaId": "82F69843-978D-4686-BC5B-1D09DA4A21BD"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.2.1:*:*:*:*:*:*:*",
"matchCriteriaId": "ACEE0AED-7918-41E9-A902-AC4070E03132"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.2.2:*:*:*:*:*:*:*",
"matchCriteriaId": "81E19472-47B4-4398-A188-CA5A5D3E7060"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.2.3:*:*:*:*:*:*:*",
"matchCriteriaId": "D17407A2-089E-43A5-9BD5-EFF966F5CC16"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.3:*:*:*:*:*:*:*",
"matchCriteriaId": "9C4B436D-8D6A-473E-B707-26147208808B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.3.1:*:*:*:*:*:*:*",
"matchCriteriaId": "1E26B353-4985-4116-B97A-5767CDC732F1"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.3.2:*:*:*:*:*:*:*",
"matchCriteriaId": "9F7180B3-03AC-427C-8CAD-FE06F81C4FF1"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.4:*:*:*:*:*:*:*",
"matchCriteriaId": "442021C9-BE4D-4BC9-8114-8BEFA9EC1232"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:kde:kde:3.4.0:*:*:*:*:*:*:*",
"matchCriteriaId": "D600E27F-A1D6-42C7-8ED1-FD508F5B3AB1"
}
]
}
]
}
],
"references": [
{
"url": "http://marc.info/?l=bugtraq&m=112171434023679&w=2",
"source": "secalert@redhat.com"
},
{
"url": "http://security.gentoo.org/glsa/glsa-200611-21.xml",
"source": "secalert@redhat.com"
},
{
"url": "http://securitytracker.com/id?1014512",
"source": "secalert@redhat.com"
},
{
"url": "http://www.debian.org/security/2005/dsa-804",
"source": "secalert@redhat.com"
},
{
"url": "http://www.kde.org/info/security/advisory-20050718-1.txt",
"source": "secalert@redhat.com",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://www.novell.com/linux/security/advisories/2005_18_sr.html",
"source": "secalert@redhat.com"
},
{
"url": "http://www.redhat.com/support/errata/RHSA-2005-612.html",
"source": "secalert@redhat.com"
},
{
"url": "http://www.securityfocus.com/archive/1/427976/100/0/threaded",
"source": "secalert@redhat.com"
},
{
"url": "http://www.securityfocus.com/bid/14297",
"source": "secalert@redhat.com"
},
{
"url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9434",
"source": "secalert@redhat.com"
}
]
}