CVE

Id
14474  
CVE No.
CVE-2005-3268  
Status
Candidate  
Description
yiff server (yiff-server) 2.14.2 on Debian GNU/Linux runs as root and does not properly verify ownership of files that it opens, which allows local users to read arbitrary files.  
Phase
Assigned (20051020)  
Votes
None (candidate not yet proposed)  
Comments