PublicDate: 2007-06-07 22:30:00 UTC Candidate: CVE-2007-3024 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3024 Description: libclamav/others.c in ClamAV before 0.90.3 and 0.91 before 0.91rc1 uses insecure permissions for temporary files that are created by the cli_gentempstream function in clamd/clamdscan, which might allow local users to read sensitive files. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_clamav: released (0.92.1~dfsg2-1.1~dapper2) edgy_clamav: needed (reached end-of-life) feisty_clamav: released (0.90.2-0ubuntu1.3) gutsy_clamav: released (0.90.3-1) hardy_clamav: released (0.90.3-1) devel_clamav: released (0.90.3-1) upstream_clamav: released (0.90.3)