Описание
An issue in sd command v1.0.0 and before allows attackers to escalate privileges to root via a crafted command.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| rust-sd | unfixed | package |
Примечания
https://gist.github.com/faabbi/827f10e144fdd342e13a3dd838902e83
https://github.com/chmln/sd/issues/323
Not a rust-sd issue, but rather a missconfiguration of sudoers config
EPSS
Процентиль: 5%
0.00021
Низкий
Связанные уязвимости
CVSS3: 8.4
ubuntu
около 2 месяцев назад
An issue in sd command v1.0.0 and before allows attackers to escalate privileges to root via a crafted command.
CVSS3: 8.4
nvd
около 2 месяцев назад
An issue in sd command v1.0.0 and before allows attackers to escalate privileges to root via a crafted command.
CVSS3: 6.5
github
около 2 месяцев назад
sd changes the group ownership of the source file
EPSS
Процентиль: 5%
0.00021
Низкий