Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36gf-xprp-mg7j

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.

The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.

EPSS

Процентиль: 5%
0.0002
Низкий

Дефекты

CWE-59

Связанные уязвимости

ubuntu
почти 16 лет назад

The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.

redhat
почти 16 лет назад

The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.

nvd
почти 16 лет назад

The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.

debian
почти 16 лет назад

The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 an ...

EPSS

Процентиль: 5%
0.0002
Низкий

Дефекты

CWE-59