Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2x6r-rq7f-fcrj

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The transform_save function in transform.c in Augeas before 1.0.0 allows local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on a .augsave file in a backup save action, a different vector than CVE-2012-0786.

The transform_save function in transform.c in Augeas before 1.0.0 allows local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on a .augsave file in a backup save action, a different vector than CVE-2012-0786.

EPSS

Процентиль: 14%
0.00046
Низкий

Дефекты

CWE-22

Связанные уязвимости

ubuntu
около 12 лет назад

The transform_save function in transform.c in Augeas before 1.0.0 allows local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on a .augsave file in a backup save action, a different vector than CVE-2012-0786.

redhat
около 12 лет назад

The transform_save function in transform.c in Augeas before 1.0.0 allows local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on a .augsave file in a backup save action, a different vector than CVE-2012-0786.

nvd
около 12 лет назад

The transform_save function in transform.c in Augeas before 1.0.0 allows local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on a .augsave file in a backup save action, a different vector than CVE-2012-0786.

debian
около 12 лет назад

The transform_save function in transform.c in Augeas before 1.0.0 allo ...

EPSS

Процентиль: 14%
0.00046
Низкий

Дефекты

CWE-22