Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlier does not properly verify that temporary files have been created with restricted permissions, which might allow local users to create files with weak permissions via a race condition between the mktemp and safe_fopen function calls.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mutt mail client mutt_adv_mktemp函数不安全临时文件创建漏洞
Vulnerability Description
Mutt mail client 1.5.12和更早版本中的mutt_adv_mktemp函数,并未正确地验证使用受限权限创建临时文件,从而本地用户可以通过mktemp和safe_fopen函数调用之间的竞争状态利用较弱的权限创建文件。
CVSS Information
N/A
Vulnerability Type
N/A