Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2007-0227

Опубликовано: 13 янв. 2007
Источник: debian
EPSS Низкий

Описание

slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
slocatefixed3.1-1.1package
slocatenot-affectedsargepackage
slocateno-dsaetchpackage

Примечания

  • slocate will allow users to find files in directories with the

  • executable bit set but without the readable bit set. This is

  • an information leak.

EPSS

Процентиль: 63%
0.00449
Низкий

Связанные уязвимости

ubuntu
больше 18 лет назад

slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.

nvd
больше 18 лет назад

slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.

github
больше 3 лет назад

slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7.

EPSS

Процентиль: 63%
0.00449
Низкий