Описание
mktexlsr revision 22855 through revision 36625 as packaged in texlive allows local users to write to arbitrary files via a symlink attack.
Ссылки
- Mailing ListThird Party Advisory
- Issue TrackingThird Party Advisory
- Issue TrackingPatchThird Party Advisory
- PatchVendor Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
- Issue TrackingThird Party Advisory
- Issue TrackingPatchThird Party Advisory
- PatchVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:tug:texlive:20100722:*:*:*:*:*:*:*
cpe:2.3:a:tug:texlive:20110705:*:*:*:*:*:*:*
cpe:2.3:a:tug:texlive:20120701:*:*:*:*:*:*:*
cpe:2.3:a:tug:texlive:20130530:*:*:*:*:*:*:*
cpe:2.3:a:tug:texlive:20140525:*:*:*:*:*:*:*
EPSS
Процентиль: 34%
0.00139
Низкий
6.1 Medium
CVSS3
5.6 Medium
CVSS2
Дефекты
CWE-59
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 8 лет назад
mktexlsr revision 22855 through revision 36625 as packaged in texlive allows local users to write to arbitrary files via a symlink attack.
redhat
около 11 лет назад
mktexlsr revision 22855 through revision 36625 as packaged in texlive allows local users to write to arbitrary files via a symlink attack.
CVSS3: 6.1
debian
больше 8 лет назад
mktexlsr revision 22855 through revision 36625 as packaged in texlive ...
CVSS3: 6.1
github
больше 3 лет назад
mktexlsr revision 22855 through revision 36625 as packaged in texlive allows local users to write to arbitrary files via a symlink attack.
EPSS
Процентиль: 34%
0.00139
Низкий
6.1 Medium
CVSS3
5.6 Medium
CVSS2
Дефекты
CWE-59