Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3g7-crqm-323f

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.

modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.

EPSS

Процентиль: 21%
0.0007
Низкий

Связанные уязвимости

redhat
почти 13 лет назад

modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.

nvd
почти 13 лет назад

modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.

debian
почти 13 лет назад

modules/certs/manifests/config.pp in katello-configure before 1.3.3.pu ...

EPSS

Процентиль: 21%
0.0007
Низкий