Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10156

Опубликовано: 23 янв. 2017
Источник: debian
EPSS Низкий

Описание

A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
systemdfixed229-1package
systemdnot-affectedjessiepackage
systemdnot-affectedwheezypackage

Примечания

  • https://bugzilla.suse.com/show_bug.cgi?id=1020601

  • Fixed by: https://github.com/systemd/systemd/commit/06eeacb6fe029804f296b065b3ce91e796e1cd0e (v229)

  • Introduced by: https://github.com/systemd/systemd/commit/ee735086f8670be1591fa9593e80dd60163a7a2f (v228)

EPSS

Процентиль: 72%
0.00712
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 9 лет назад

A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.

CVSS3: 7.8
redhat
около 9 лет назад

A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.

CVSS3: 7.8
nvd
около 9 лет назад

A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.

suse-cvrf
около 9 лет назад

Security update for systemd

suse-cvrf
около 9 лет назад

Security update for systemd

EPSS

Процентиль: 72%
0.00712
Низкий