Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m3qw-f5f6-m6r3

Опубликовано: 13 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications.

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications.

EPSS

Процентиль: 25%
0.00325
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-354

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 3 лет назад

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

CVSS3: 5.3
nvd
около 3 лет назад

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

msrc
9 дней назад

An issue was discovered in systemd 253. An attacker can truncate a sealed log file and then resume log sealing such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

CVSS3: 5.3
debian
около 3 лет назад

An issue was discovered in systemd 253. An attacker can truncate a sea ...

EPSS

Процентиль: 25%
0.00325
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-354