Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-7272

Опубликовано: 08 мар. 2018
Источник: debian
EPSS Низкий

Описание

Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to gain root privileges because code running as root performs write operations within a user home directory, and this user may have created links in advance (exploitation requires the user to win a race condition in the ~/.Xauthority chown case, but not other cases).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sddmfixed0.11.0-1experimentalpackage
sddmfixed0.11.0-2package

Примечания

  • https://bugzilla.suse.com/show_bug.cgi?id=897788

EPSS

Процентиль: 36%
0.00149
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
почти 8 лет назад

Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to gain root privileges because code running as root performs write operations within a user home directory, and this user may have created links in advance (exploitation requires the user to win a race condition in the ~/.Xauthority chown case, but not other cases).

CVSS3: 7.8
github
больше 3 лет назад

Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to gain root privileges because code running as root performs write operations within a user home directory, and this user may have created links in advance (exploitation requires the user to win a race condition in the ~/.Xauthority chown case, but not other cases).

CVSS3: 7.8
fstec
больше 11 лет назад

Уязвимость экранного менеджера Simple Desktop Display Manager операционной системы Fedora, позволяющая нарушителю получить привилегии root

EPSS

Процентиль: 36%
0.00149
Низкий