Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wfrc-r682-56qv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 2.5

Описание

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

EPSS

Процентиль: 19%
0.00062
Низкий

2.5 Low

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 2.5
ubuntu
почти 5 лет назад

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

CVSS3: 2.5
redhat
почти 5 лет назад

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

CVSS3: 2.5
nvd
почти 5 лет назад

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

CVSS3: 2.5
msrc
почти 5 лет назад

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

CVSS3: 2.5
debian
почти 5 лет назад

The sudoedit personality of Sudo before 1.9.5 may allow a local unpriv ...

EPSS

Процентиль: 19%
0.00062
Низкий

2.5 Low

CVSS3

Дефекты

CWE-59