Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h7g6-frrr-69cx

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.

EPSS

Процентиль: 15%
0.00048
Низкий

Дефекты

CWE-59

Связанные уязвимости

ubuntu
больше 11 лет назад

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.

nvd
больше 11 лет назад

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.

debian
больше 11 лет назад

The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, ...

EPSS

Процентиль: 15%
0.00048
Низкий

Дефекты

CWE-59