Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-7529

Опубликовано: 06 нояб. 2017
Источник: debian
EPSS Низкий

Описание

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sosreportfixed3.2+git276-g7da50d6-3package

Примечания

  • Neutralised by kernel hardening

EPSS

Процентиль: 18%
0.00058
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

redhat
почти 10 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

CVSS3: 7.8
nvd
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

CVSS3: 7.8
github
больше 3 лет назад

SoSReport Predictable Tmp File Names

oracle-oval
больше 9 лет назад

ELSA-2016-0188: sos security and bug fix update (MODERATE)

EPSS

Процентиль: 18%
0.00058
Низкий