Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q362-8vfv-xw4c

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

EPSS

Процентиль: 7%
0.0003
Низкий

Дефекты

CWE-59

Связанные уязвимости

ubuntu
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

redhat
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

nvd
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

debian
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, wit ...

oracle-oval
больше 14 лет назад

ELSA-2010-0811: cups security update (IMPORTANT)

EPSS

Процентиль: 7%
0.0003
Низкий

Дефекты

CWE-59