Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-548j-7qqv-2mvf

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

mktexlsr revision 36855, and before revision 36626 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. NOTE: this vulnerability exists due to the reversion of a fix of CVE-2015-5700.

mktexlsr revision 36855, and before revision 36626 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. NOTE: this vulnerability exists due to the reversion of a fix of CVE-2015-5700.

EPSS

Процентиль: 41%
0.00192
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 8 лет назад

mktexlsr revision 36855, and before revision 36626 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. NOTE: this vulnerability exists due to the reversion of a fix of CVE-2015-5700.

redhat
около 11 лет назад

mktexlsr revision 36855, and before revision 36626 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. NOTE: this vulnerability exists due to the reversion of a fix of CVE-2015-5700.

CVSS3: 6.1
nvd
больше 8 лет назад

mktexlsr revision 36855, and before revision 36626 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. NOTE: this vulnerability exists due to the reversion of a fix of CVE-2015-5700.

CVSS3: 6.1
debian
больше 8 лет назад

mktexlsr revision 36855, and before revision 36626 as packaged in texl ...

EPSS

Процентиль: 41%
0.00192
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-59