Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-2905

Опубликовано: 02 мая 2014
Источник: debian

Описание

fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly check the credentials, which allows local users to gain privileges via the universal variable socket, related to /tmp/fishd.socket.user permissions.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
fishfixed2.1.1-1package
fishno-dsasqueezepackage
fishno-dsawheezypackage

Примечания

  • https://github.com/fish-shell/fish-shell/issues/1436

Связанные уязвимости

ubuntu
больше 12 лет назад

fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly check the credentials, which allows local users to gain privileges via the universal variable socket, related to /tmp/fishd.socket.user permissions.

nvd
больше 12 лет назад

fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly check the credentials, which allows local users to gain privileges via the universal variable socket, related to /tmp/fishd.socket.user permissions.

github
больше 4 лет назад

fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly check the credentials, which allows local users to gain privileges via the universal variable socket, related to /tmp/fishd.socket.user permissions.

fstec
больше 11 лет назад

Уязвимость операционной системы Gentoo Linux, позволяющая злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

suse-cvrf
почти 7 лет назад

Security update for fish3