EIP-2026-102997
PRE-CVESkype Technologies Skype 0.92/1.0/1.1 - Insecure Temporary File Creation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102997. PoCs published by Giovanni Delvecchio.
AI-analyzed exploit summary This exploit leverages an insecure temporary file creation vulnerability in Skype by creating a symbolic link to a critical file (/var/run/sudo/$user_ticket) via a predictable filename (/tmp/skype_profile.jpg). This could lead to denial of service or privilege escalation if the file is overwritten.
Description
Skype Technologies Skype 0.92/1.0/1.1 - Insecure Temporary File Creation
Exploits (1)
This exploit leverages an insecure temporary file creation vulnerability in Skype by creating a symbolic link to a critical file (/var/run/sudo/$user_ticket) via a predictable filename (/tmp/skype_profile.jpg). This could lead to denial of service or privilege escalation if the file is overwritten.