CVE-2009-2461 describes a critical vulnerability in mathtex.cgi within the mathTeX software, specifically in versions downloaded before July 13, 2009. This flaw stems from insecure temporary file creation, leading to unspecified impact and local attack vectors. With a CVSS score of 7.2 (AV:L/AC:L/Au:N/C:C/I:C/A:C), it indicates high confidentiality, integrity, and availability impacts, requiring local access and low attack complexity. There is no evidence of active exploitation, public exploit code, or significant community discussion, suggesting a low current threat profile.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.02CPE matchmatch criteria | cpe:2.3:a:forkosh:mathtex:*:*:*:*:*:*:*:* | ||
1.00CPE matchmatch criteria | cpe:2.3:a:forkosh:mathtex:1.00:*:*:*:*:*:*:* | ||
1.01CPE matchmatch criteria | cpe:2.3:a:forkosh:mathtex:1.01:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.