Description
spread uses a temporary file with a static filename based on the port number, which allows local users to cause a denial of service by creating the file during a race condition between unlink and bind function calls. NOTE: spread deletes this temporary file before use, which could cause conflicts with other programs that use the same filename, but this is not a distinct issue.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2006-3115 | spread uses a temporary file with a static filename based on the port number, which allows local users to cause a denial of service by creating the file during a race condition between unlink and bind function calls. NOTE: spread deletes this temporary file before use, which could cause conflicts with other programs that use the same filename, but this is not a distinct issue. |
References
History
No history.
Status: PUBLISHED
Assigner: debian
Published:
Updated: 2024-08-07T18:16:05.933Z
Reserved: 2006-06-21T00:00:00.000Z
Link: CVE-2006-3118
No data.
Status : Modified
Published: 2006-06-30T19:05:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2006-3118
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD