Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-52x8-2f4w-q8mm

Опубликовано: 03 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink attack against a temporary file such as TMP2-00.permall.

In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink attack against a temporary file such as TMP2-00.permall.

EPSS

Процентиль: 20%
0.00279
Низкий

7.1 High

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 3 года назад

In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink attack against a temporary file such as TMP2-00.permall.

CVSS3: 7.3
redhat
почти 6 лет назад

In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink attack against a temporary file such as TMP2-00.permall.

CVSS3: 7.1
nvd
почти 3 года назад

In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink attack against a temporary file such as TMP2-00.permall.

CVSS3: 7.1
debian
почти 3 года назад

In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be ...

EPSS

Процентиль: 20%
0.00279
Низкий

7.1 High

CVSS3

Дефекты

CWE-59