Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m32j-rvq2-jpp7

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.

The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.

EPSS

Процентиль: 37%
0.00158
Низкий

7.8 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 7 лет назад

The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.

CVSS3: 6.6
redhat
около 11 лет назад

The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.

CVSS3: 7.8
nvd
больше 7 лет назад

The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.

CVSS3: 7.8
debian
больше 7 лет назад

The mdcheck script of the mdadm package for openSUSE 13.2 prior to ver ...

EPSS

Процентиль: 37%
0.00158
Низкий

7.8 High

CVSS3

Дефекты

CWE-77