Описание
The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.
Ссылки
- ExploitVendor Advisory
- PatchVendor Advisory
- ExploitPatchVendor Advisory
- ExploitVendor Advisory
- PatchVendor Advisory
- ExploitPatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:gert_doering:mgetty:1.1.19:*:*:*:*:*:*:*
cpe:2.3:a:gert_doering:mgetty:1.1.20:*:*:*:*:*:*:*
cpe:2.3:a:gert_doering:mgetty:1.1.21:*:*:*:*:*:*:*
EPSS
Процентиль: 44%
0.00214
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
redhat
почти 25 лет назад
The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.
github
около 3 лет назад
The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.
EPSS
Процентиль: 44%
0.00214
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other