Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h99v-fr29-7p28

Опубликовано: 20 нояб. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

EPSS

Процентиль: 42%
0.00195
Низкий

7.8 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 4 лет назад

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

CVSS3: 7.3
redhat
около 4 лет назад

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

CVSS3: 7.8
nvd
около 4 лет назад

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

CVSS3: 7.8
msrc
4 месяца назад

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

CVSS3: 7.8
debian
около 4 лет назад

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod op ...

EPSS

Процентиль: 42%
0.00195
Низкий

7.8 High

CVSS3

Дефекты

CWE-269