Описание
Helix GNOME Updater helix-update 0.5 and earlier allows local users to install arbitrary RPM packages by creating the /tmp/helix-install installation directory before root has begun installing packages.
Ссылки
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:helix_code:gnome_updater:0.1:*:*:*:*:*:*:*
cpe:2.3:a:helix_code:gnome_updater:0.2:*:*:*:*:*:*:*
cpe:2.3:a:helix_code:gnome_updater:0.3:*:*:*:*:*:*:*
cpe:2.3:a:helix_code:gnome_updater:0.4:*:*:*:*:*:*:*
cpe:2.3:a:helix_code:gnome_updater:0.5:*:*:*:*:*:*:*
EPSS
Процентиль: 14%
0.00047
Низкий
6.2 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Helix GNOME Updater helix-update 0.5 and earlier allows local users to install arbitrary RPM packages by creating the /tmp/helix-install installation directory before root has begun installing packages.
EPSS
Процентиль: 14%
0.00047
Низкий
6.2 Medium
CVSS2
Дефекты
NVD-CWE-Other