Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m3qw-f5f6-m6r3

Опубликовано: 13 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications.

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications.

EPSS

Процентиль: 28%
0.001
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-354

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

CVSS3: 5.3
nvd
больше 2 лет назад

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

CVSS3: 5.3
debian
больше 2 лет назад

An issue was discovered in systemd 253. An attacker can truncate a sea ...

EPSS

Процентиль: 28%
0.001
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-354