Описание
caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.
Ссылки
- ExploitPatchThird Party Advisory
- ExploitMailing ListPatchThird Party Advisory
- Third Party Advisory
- ExploitPatchThird Party Advisory
- ExploitMailing ListPatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.75 (включая)
cpe:2.3:a:inria:caml-light:*:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00528
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-377
Связанные уязвимости
github
почти 4 года назад
caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.
EPSS
Процентиль: 67%
0.00528
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-377