Описание
qpopper 4.0.5 and earlier does not properly drop privileges before processing certain user-supplied files, which allows local users to overwrite or create arbitrary files as root.
Ссылки
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 4.0.4 (включая)
Одно из
cpe:2.3:a:debian:qpopper:*:*:*:*:*:*:*:*
cpe:2.3:a:debian:qpopper:4.0.5:*:*:*:*:*:*:*
EPSS
Процентиль: 17%
0.00056
Низкий
7.2 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
ubuntu
больше 20 лет назад
qpopper 4.0.5 and earlier does not properly drop privileges before processing certain user-supplied files, which allows local users to overwrite or create arbitrary files as root.
debian
больше 20 лет назад
qpopper 4.0.5 and earlier does not properly drop privileges before pro ...
github
больше 3 лет назад
qpopper 4.0.5 and earlier does not properly drop privileges before processing certain user-supplied files, which allows local users to overwrite or create arbitrary files as root.
EPSS
Процентиль: 17%
0.00056
Низкий
7.2 High
CVSS2
Дефекты
NVD-CWE-Other