Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mq85-mwhp-wv55

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.

EPSS

Процентиль: 50%
0.00272
Низкий

Дефекты

CWE-362

Связанные уязвимости

ubuntu
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.

redhat
больше 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.

nvd
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.

debian
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 a ...

fstec
почти 13 лет назад

Уязвимость графического сервера X Window System, позволяющая нарушителю изменить права доступа к файлам или вызвать отказ в обслуживании

EPSS

Процентиль: 50%
0.00272
Низкий

Дефекты

CWE-362