Описание
Opera 7.54 and earlier on Gentoo Linux uses an insecure path for plugins, which could allow local users to gain privileges by inserting malicious libraries into the PORTAGE_TMPDIR (portage) temporary directory.
Ссылки
- Third Party AdvisoryVendor Advisory
- PatchThird Party AdvisoryVendor Advisory
- Third Party AdvisoryVendor Advisory
- PatchThird Party AdvisoryVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.54 (включая)
cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.0004
Низкий
7.2 High
CVSS2
Дефекты
CWE-427
Связанные уязвимости
github
почти 4 года назад
Opera 7.54 and earlier on Gentoo Linux uses an insecure path for plugins, which could allow local users to gain privileges by inserting malicious libraries into the PORTAGE_TMPDIR (portage) temporary directory.
EPSS
Процентиль: 12%
0.0004
Низкий
7.2 High
CVSS2
Дефекты
CWE-427