CVE-2012-3345

ioquake3 < r2252 - Arbitrary File Write via Symlink Attack on /tmp/ioq3.pid

Title source: llm
STIX 2.1

Description

ioquake3 before r2253 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ioq3.pid temporary file.

References (2)

Core 2
Core References
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2012/06/15/3
Third Party Advisory vendor-advisory x_refsource_gentoo
https://security.gentoo.org/glsa/201706-23

Scores

EPSS 0.0029
EPSS Percentile 20.7%

Details

CWE
CWE-59
Status published
Products (1)
ioquake3/ioquake3_engine < r2252
Published Jun 15, 2012
Tracked Since Feb 18, 2026