CVE-2020-11867
—CVSS 3.1
3.3 low
EPSS
<1%p40
Published
()
Modified
Description
Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there.
- Vendors
- audacityteamfedoraproject
- Products
- audacity, fedora
- Weakness
- CWE-276
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.