Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18188

Опубликовано: 14 фев. 2018
Источник: debian

Описание

OpenRC opentmpfiles through 0.1.3, when the fs.protected_hardlinks sysctl is turned off, allows local users to obtain ownership of arbitrary files by creating a hard link inside a directory on which "chown -R" will be run.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
opentmpfilesremovedpackage

Примечания

  • https://github.com/OpenRC/opentmpfiles/issues/3

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 8 лет назад

OpenRC opentmpfiles through 0.1.3, when the fs.protected_hardlinks sysctl is turned off, allows local users to obtain ownership of arbitrary files by creating a hard link inside a directory on which "chown -R" will be run.

CVSS3: 5.5
nvd
почти 8 лет назад

OpenRC opentmpfiles through 0.1.3, when the fs.protected_hardlinks sysctl is turned off, allows local users to obtain ownership of arbitrary files by creating a hard link inside a directory on which "chown -R" will be run.

CVSS3: 5.5
github
больше 3 лет назад

OpenRC opentmpfiles through 0.1.3, when the fs.protected_hardlinks sysctl is turned off, allows local users to obtain ownership of arbitrary files by creating a hard link inside a directory on which "chown -R" will be run.