Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q362-8vfv-xw4c

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

EPSS

Процентиль: 7%
0.0003
Низкий

Дефекты

CWE-59

Связанные уязвимости

ubuntu
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

redhat
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

nvd
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

debian
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, wit ...

oracle-oval
около 15 лет назад

ELSA-2010-0811: cups security update (IMPORTANT)

EPSS

Процентиль: 7%
0.0003
Низкий

Дефекты

CWE-59