Описание
The (1) write_list and (2) dump_curr_list functions in Net-Acct before 0.71 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Ссылки
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ulrich_callmeier:net-acct:0.6:*:*:*:*:*:*:*
cpe:2.3:a:ulrich_callmeier:net-acct:0.7:*:*:*:*:*:*:*
cpe:2.3:a:ulrich_callmeier:net-acct:0.71:*:*:*:*:*:*:*
EPSS
Процентиль: 22%
0.00072
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
debian
около 21 года назад
The (1) write_list and (2) dump_curr_list functions in Net-Acct before ...
github
больше 3 лет назад
The (1) write_list and (2) dump_curr_list functions in Net-Acct before 0.71 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
EPSS
Процентиль: 22%
0.00072
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other