ZeroHour

CVE-2020-11867

CVSS 3.1
3.3 low
EPSS
<1%p40
Published
()
Modified
Description

Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there.

Vendors
audacityteamfedoraproject
Products
audacity, fedora
Weakness
CWE-276
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.