CyberRota Analysis
AI-GeneratedThe Flameshot screenshot software prior to version 14.0.0 is vulnerable due to its Open With feature, which writes screenshots to a predictable temporary path and follows symlinks, enabling local unprivileged attackers to exploit a race condition. This flaw allows attackers to overwrite files that the victim user has permission to modify, potentially leading to data loss or corruption. Users of Flameshot, especially those in shared environments, should prioritize upgrading to version 14.0.0 to mitigate this risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Flameshot is powerful yet simple to use screenshot software. Prior to 14.0.0, the Open With feature wrote screenshots to a predictable temporary path and followed symlinks, creating a time-of-check to time-of-use race that allowed a local unprivileged attacker on the same machine to pre-plant a symlink and cause Flameshot to write PNG data through it, overwriting any file the victim user could write. This issue is fixed in version 14.0.0.