Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-4235

Опубликовано: 03 дек. 2019
Источник: debian
EPSS Низкий

Описание

shadow: TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees

Пакеты

ПакетСтатусВерсия исправленияРелизТип
shadowfixed1:4.12.3+dfsg1-1package

Примечания

  • https://github.com/shadow-maint/shadow/issues/317

  • https://github.com/shadow-maint/shadow/pull/545

  • Fixed by: https://github.com/shadow-maint/shadow/commit/e9ae247cb14f977d8881f481488843b10665dba8 (4.12.2)

  • Fixed by: https://github.com/shadow-maint/shadow/commit/f6f8bcd2a57c06983296485cc028ebdf467ebfd7 (4.12.2)

  • Fixed by: https://github.com/shadow-maint/shadow/commit/dab764d0195fc16d1d39330eee8a33e8917826d8 (4.12.2)

  • Fixed by: https://github.com/shadow-maint/shadow/commit/1d281273b149f2bb992d893d8ca9ffffddc95cc8 (4.12.2)

  • Fixed by: https://github.com/shadow-maint/shadow/commit/f606314f0c22fb5d13e5af17a70860d57559e808 (4.12.2)

  • Fixed by: https://github.com/shadow-maint/shadow/commit/6cbec2d0aa29d6d25e9eed007ded4e79eb637519 (4.12.2)

  • Fixed by: https://github.com/shadow-maint/shadow/commit/faeab50e710131816b261de66141524898c2c487 (4.12.2)

  • Regression fix: https://github.com/shadow-maint/shadow/commit/f3bdb28e57e5e38c1e89347976c7d61a181eec32 (4.13)

  • Regression fix: https://github.com/shadow-maint/shadow/commit/10cd68e0f04b48363eb32d2c6e168b358fb27810 (4.13)

  • Regression fix: https://github.com/shadow-maint/shadow/commit/cde221b8587193f9dc300c0799a530e846c75961 (4.13)

EPSS

Процентиль: 19%
0.00061
Низкий

Связанные уязвимости

CVSS3: 4.7
ubuntu
около 6 лет назад

shadow: TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees

CVSS3: 4.4
redhat
около 11 лет назад

shadow: TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees

CVSS3: 4.7
nvd
около 6 лет назад

shadow: TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees

suse-cvrf
около 1 года назад

Security update for shadow

suse-cvrf
больше 1 года назад

Security update for shadow

EPSS

Процентиль: 19%
0.00061
Низкий