Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10100

Опубликовано: 02 янв. 2017
Источник: debian
EPSS Низкий

Описание

Borg (aka BorgBackup) before 1.0.9 has a flaw in the way duplicate archive names were processed during manifest recovery, potentially allowing an attacker to overwrite an archive.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
borgbackupfixed1.0.9-1package

Примечания

  • https://borgbackup.readthedocs.io/en/stable/changes.html#pre-1-0-9-manifest-spoofing-vulnerability

EPSS

Процентиль: 52%
0.00291
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 9 лет назад

Borg (aka BorgBackup) before 1.0.9 has a flaw in the way duplicate archive names were processed during manifest recovery, potentially allowing an attacker to overwrite an archive.

CVSS3: 5.3
nvd
около 9 лет назад

Borg (aka BorgBackup) before 1.0.9 has a flaw in the way duplicate archive names were processed during manifest recovery, potentially allowing an attacker to overwrite an archive.

CVSS3: 5.3
github
больше 3 лет назад

Borg (aka BorgBackup) before 1.0.9 has a flaw in the way duplicate archive names were processed during manifest recovery, potentially allowing an attacker to overwrite an archive.

EPSS

Процентиль: 52%
0.00291
Низкий