Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-6954

Опубликовано: 13 фев. 2018
Источник: debian
EPSS Низкий

Описание

systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turned on.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
systemdfixed238-1package
systemdignoredstretchpackage
systemdpostponedjessiepackage
systemdnot-affectedwheezypackage

Примечания

  • https://github.com/systemd/systemd/issues/7986

  • https://github.com/systemd/systemd/pull/8822

  • https://www.openwall.com/lists/oss-security/2018/12/22/1

EPSS

Процентиль: 42%
0.00525
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turned on.

CVSS3: 7
redhat
больше 8 лет назад

systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turned on.

CVSS3: 7.8
nvd
больше 8 лет назад

systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turned on.

CVSS3: 7.8
github
больше 4 лет назад

systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turned on.

CVSS3: 7.8
fstec
больше 8 лет назад

Уязвимость компонента systemd-tmpfiles демона Systemd, позволяющая нарушителю получить доступ к произвольным файлам

EPSS

Процентиль: 42%
0.00525
Низкий