Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g7r2-wjmp-vjj6

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.

The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.

EPSS

Процентиль: 19%
0.0006
Низкий

7.1 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 8 лет назад

The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.

redhat
почти 12 лет назад

The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.

CVSS3: 7.1
nvd
больше 8 лет назад

The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.

CVSS3: 7.1
debian
больше 8 лет назад

The make_temporary_filename function in perltidy 20120701-1 and earlie ...

EPSS

Процентиль: 19%
0.0006
Низкий

7.1 High

CVSS3

Дефекты

CWE-284