Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mvwm-rcrw-pr2j

Опубликовано: 13 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications.

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications.

EPSS

Процентиль: 28%
0.00349
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-354

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 3 лет назад

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

CVSS3: 5.3
nvd
около 3 лет назад

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

msrc
9 дней назад

An issue was discovered in systemd 253. An attacker can modify the contents of past events in a sealed log file and then adjust the file such that checking the integrity shows no error, despite modifications. NOTE: the vendor reportedly sent "a reply denying that any of the finding was a security vulnerability."

CVSS3: 5.3
debian
около 3 лет назад

An issue was discovered in systemd 253. An attacker can modify the con ...

EPSS

Процентиль: 28%
0.00349
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-354