Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-48160 | Cadence through 0.9.2 2023-08-21 uses an Insecure /tmp/cadence-wineasio.reg Temporary File. The filename is used even if it has been created by a local adversary before Cadence started. The adversary can leverage this to create or overwrite files via a symlink attack. In some kernel configurations, code injection into the Wine registry is possible. |
Tue, 24 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-24T18:18:51.396Z
Reserved: 2023-09-22T00:00:00.000Z
Link: CVE-2023-43783
Updated: 2024-08-02T19:52:11.025Z
Status : Modified
Published: 2023-09-22T06:15:10.697
Modified: 2024-11-21T08:24:46.290
Link: CVE-2023-43783
No data.
OpenCVE Enrichment
No data.
EUVD