Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-6412

Опубликовано: 23 янв. 2014
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:augeas:augeas:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:augeas:augeas:1.1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00044
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 11 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

redhat
почти 12 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

debian
больше 11 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1 ...

github
больше 3 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

oracle-oval
больше 11 лет назад

ELSA-2014-0044: augeas security update (MODERATE)

EPSS

Процентиль: 12%
0.00044
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264