CVE-2014-3431
21.06.2014, 15:55
Symantec PGP Desktop 10.x, and Encryption Desktop Professional 10.3.x before 10.3.2 MP2, on OS X uses world-writable permissions for temporary files, which allows local users to bypass intended restrictions on file reading, modification, creation, and permission changes via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
symantec | encryption_desktop | 10.3.0 |
symantec | encryption_desktop | 10.3.1 |
symantec | encryption_desktop | 10.3.2 |
symantec | encryption_desktop | 10.3.2:mp1 |
symantec | pgp_desktop | 10.0.0 |
symantec | pgp_desktop | 10.0.1 |
symantec | pgp_desktop | 10.0.2 |
symantec | pgp_desktop | 10.0.3 |
symantec | pgp_desktop | 10.1.0 |
symantec | pgp_desktop | 10.1.1 |
symantec | pgp_desktop | 10.1.2 |
symantec | pgp_desktop | 10.2.0 |
symantec | pgp_desktop | 10.2.1 |
symantec | pgp_desktop | 10.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References