CVE-2003-0539
UnknownEPSS 0.36%
Last modified
CVE-2003-0539 is a vulnerability of currently unknown severity. skk (Simple Kana to Kanji conversion program) 12.1 and earlier, and the ddskk package which is based on skk, creates temporary files insecurely, which allows local users to overwrite arbitrary files.. EPSS estimates a 0.36% chance of exploitation in the next 30 days.
Description
skk (Simple Kana to Kanji conversion program) 12.1 and earlier, and the ddskk package which is based on skk, creates temporary files insecurely, which allows local users to overwrite arbitrary files.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ddskk | Ddskk | 11.6_.rel.0 |
| Redhat | Daredevil Skk | 11.3.2 |
| Redhat | Daredevil Skk | 11.3.5 |
| Redhat | Daredevil Skk | 11.6.0-6 |
| Redhat | Daredevil Skk | 11.6.0-8 |
| Redhat | Daredevil Skk | 11.6.0-10 |
| Redhat | Ddskk-Xemacs | 11.6.0-6 |
| Redhat | Ddskk-Xemacs | 11.6.0-8 |
| Redhat | Ddskk-Xemacs | 11.6.0-10 |
| Skk | Skk | 10.62a |
References
- http://www.debian.org/security/2003/dsa-343Patch, Vendor Advisory
- http://www.debian.org/security/2003/dsa-343Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0539?
skk (Simple Kana to Kanji conversion program) 12.1 and earlier, and the ddskk package which is based on skk, creates temporary files insecurely, which allows local users to overwrite arbitrary files.
How severe is CVE-2003-0539?
Severity scoring for CVE-2003-0539 is pending analysis. The EPSS model estimates a 0.36% probability of exploitation in the next 30 days.
How do I fix CVE-2003-0539?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-0532Internet Explorer 5.01 SP3 through 6.0 SP1 does not properly…
- CVE-2003-0533Stack-based buffer overflow in certain Active Directory serv…
- CVE-2003-0535Buffer overflow in xbl 1.0k and earlier allows local users t…
- CVE-2003-0536Directory traversal vulnerability in phpSysInfo 2.1 and earl…
- CVE-2003-0537The liece Emacs IRC client 2.0+0.20030527 and earlier create…
- CVE-2003-0538The mailcap file for mozart 1.2.5 and earlier causes Oz appl…
- CVE-2003-0540The address parser code in Postfix 1.1.12 and earlier allows…
- CVE-2003-0541gtkhtml before 1.1.10, as used in Evolution, allows remote a…
- CVE-2003-0542Multiple stack-based buffer overflows in (1) mod_alias and (…
- CVE-2003-0543Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote at…
- CVE-2003-0544OpenSSL 0.9.6 and 0.9.7 does not properly track the number o…
- CVE-2003-0545Double free vulnerability in OpenSSL 0.9.7 allows remote att…9.8
Are you affected by CVE-2003-0539?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
