Описание
noweb 2.10c and earlier allows local users to overwrite arbitrary files via symlink attacks on temporary files in (1) lib/toascii.nw and (2) shell/roff.mm.
Ссылки
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- Patch
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:norman_ramsey:noweb:2.9a:*:*:*:*:*:*:*
cpe:2.3:a:norman_ramsey:noweb:2.10c:*:*:*:*:*:*:*
EPSS
Процентиль: 20%
0.00062
Низкий
1.2 Low
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
ubuntu
больше 19 лет назад
noweb 2.10c and earlier allows local users to overwrite arbitrary files via symlink attacks on temporary files in (1) lib/toascii.nw and (2) shell/roff.mm.
debian
больше 19 лет назад
noweb 2.10c and earlier allows local users to overwrite arbitrary file ...
github
больше 3 лет назад
noweb 2.10c and earlier allows local users to overwrite arbitrary files via symlink attacks on temporary files in (1) lib/toascii.nw and (2) shell/roff.mm.
EPSS
Процентиль: 20%
0.00062
Низкий
1.2 Low
CVSS2
Дефекты
NVD-CWE-Other