Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p785-598g-mxcr

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

In open buildservice 2.6 before 2.6.3, 2.5 before 2.5.7 and 2.4 before 2.4.8 the source service patch application could generate non-standard files like symlinks or device nodes, which could allow buildservice users to break of confinement or cause denial of service attacks on the source service.

In open buildservice 2.6 before 2.6.3, 2.5 before 2.5.7 and 2.4 before 2.4.8 the source service patch application could generate non-standard files like symlinks or device nodes, which could allow buildservice users to break of confinement or cause denial of service attacks on the source service.

EPSS

Процентиль: 37%
0.00156
Низкий

7.8 High

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 6.3
nvd
почти 8 лет назад

In open buildservice 2.6 before 2.6.3, 2.5 before 2.5.7 and 2.4 before 2.4.8 the source service patch application could generate non-standard files like symlinks or device nodes, which could allow buildservice users to break of confinement or cause denial of service attacks on the source service.

CVSS3: 6.3
debian
почти 8 лет назад

In open buildservice 2.6 before 2.6.3, 2.5 before 2.5.7 and 2.4 before ...

EPSS

Процентиль: 37%
0.00156
Низкий

7.8 High

CVSS3

Дефекты

CWE-59