Описание
Tahoe-LAFS fails to ensure integrity
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2012-0051
- https://github.com/pypa/advisory-database/tree/main/vulns/tahoe-lafs/PYSEC-2019-253.yaml
- https://security-tracker.debian.org/tracker/CVE-2012-0051
- https://tahoe-lafs.org/trac/tahoe-lafs/ticket/1654
- http://www.openwall.com/lists/oss-security/2012/01/15/11
- http://www.openwall.com/lists/oss-security/2012/01/26/7
- http://www.openwall.com/lists/oss-security/2012/01/26/8
- http://www.openwall.com/lists/oss-security/2012/01/26/9
Пакеты
Наименование
tahoe-lafs
pip
Затронутые версииВерсия исправления
= 1.9.0
Отсутствует
EPSS
Процентиль: 80%
0.01355
Низкий
CVE ID
Связанные уязвимости
CVSS3: 7.4
ubuntu
около 6 лет назад
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.
CVSS3: 7.4
nvd
около 6 лет назад
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.
CVSS3: 7.4
debian
около 6 лет назад
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attacke ...
EPSS
Процентиль: 80%
0.01355
Низкий