Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-1111

Опубликовано: 02 мая 2005
Источник: nvd
CVSS3: 4.7
CVSS2: 3.7
EPSS Низкий

Описание

Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:cpio:*:*:*:*:*:*:*:*
Версия до 2.6 (включая)
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:o:canonical:ubuntu_linux:4.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*

EPSS

Процентиль: 23%
0.00075
Низкий

4.7 Medium

CVSS3

3.7 Low

CVSS2

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 4.7
ubuntu
больше 20 лет назад

Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.

redhat
больше 20 лет назад

Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.

CVSS3: 4.7
debian
больше 20 лет назад

Race condition in cpio 2.6 and earlier allows local users to modify pe ...

github
больше 3 лет назад

Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.

EPSS

Процентиль: 23%
0.00075
Низкий

4.7 Medium

CVSS3

3.7 Low

CVSS2

Дефекты

CWE-59