Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-11867
Description:Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there.
Test IDs: 1.3.6.1.4.1.25623.1.1.12.2025.7211.1   1.3.6.1.4.1.25623.1.1.10.2021.0001   1.3.6.1.4.1.25623.1.0.878940  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-11867
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MG5PSF4CJ7UPMJHWX553EG3P2XN3PAYI/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WKK3S2QBXBHOFOQMXMGY5QAKVUWUX2YY/
https://github.com/audacity/audacity/releases
https://salvatoresecurity.com/the-many-perils-of-tmp/




© 1998-2025 E-Soft Inc. All rights reserved.