Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-24032

Опубликовано: 04 мар. 2021
Источник: debian
EPSS Низкий

Описание

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libzstdfixed1.4.8+dfsg-2package
libzstdnot-affectedstretchpackage

Примечания

  • https://github.com/facebook/zstd/issues/2491

EPSS

Процентиль: 4%
0.0002
Низкий

Связанные уязвимости

CVSS3: 4.7
ubuntu
почти 5 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

CVSS3: 5.5
redhat
почти 5 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

CVSS3: 4.7
nvd
почти 5 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

CVSS3: 4.7
msrc
около 1 года назад

Описание отсутствует

github
больше 3 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

EPSS

Процентиль: 4%
0.0002
Низкий