Описание
The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| mock | fixed | 1.3.2-1 | package | |
| mock | not-affected | jessie | package |
Примечания
https://bugzilla.redhat.com/show_bug.cgi?id=1375490
https://github.com/rpm-software-management/mock/commit/8b02f43beadacf6911200b48d94e39e891a41da9 (mock-1.2.21)
EPSS
Связанные уязвимости
The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
Уязвимость scm-плагина дистрибутива сборки пакетов mock операционной системы Fedora, позволяющая нарушителю получить привилегии суперпользователя
EPSS