Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p8g3-26x6-6m74

Опубликовано: 10 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

nix 2.24 through 2.24.5 allows directory traversal via a symlink in a nar file, because of mishandling of a directory containing a symlink and a directory of the same name, aka GHSA-h4vv-h3jq-v493.

nix 2.24 through 2.24.5 allows directory traversal via a symlink in a nar file, because of mishandling of a directory containing a symlink and a directory of the same name, aka GHSA-h4vv-h3jq-v493.

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

ubuntu
больше 1 года назад

Rejected reason: DO NOT USE THIS CVE RECORD. Consult IDs: CVE-2024-45593. Reason: This record is a reservation duplicate of CVE-2024-45593. Notes: All CVE users should reference CVE-2024-45593 instead of this record. All references and descriptions in this record have been removed to prevent accidental usage.

nvd
больше 1 года назад

Rejected reason: DO NOT USE THIS CVE RECORD. Consult IDs: CVE-2024-45593. Reason: This record is a reservation duplicate of CVE-2024-45593. Notes: All CVE users should reference CVE-2024-45593 instead of this record. All references and descriptions in this record have been removed to prevent accidental usage.

7.5 High

CVSS3

Дефекты

CWE-22