Описание
mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local users to obtain session ids.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libapache2-mod-auth-openid | fixed | 0.7-0.1 | package | |
| libapache2-mod-auth-openid | no-dsa | squeeze | package |
EPSS
Процентиль: 62%
0.00424
Низкий
Связанные уязвимости
ubuntu
больше 13 лет назад
mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local users to obtain session ids.
nvd
больше 13 лет назад
mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local users to obtain session ids.
github
больше 3 лет назад
mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local users to obtain session ids.
EPSS
Процентиль: 62%
0.00424
Низкий