Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-11353

Опубликовано: 17 июл. 2017
Источник: nvd
CVSS3: 5.9
CVSS2: 4.3
EPSS Низкий

Описание

yadm (yet another dotfile manager) 1.10.0 has a race condition (related to the behavior of git commands in setting permissions for new files and directories), which potentially allows access to SSH and PGP keys.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:yadm_project:yadm:1.10.0:*:*:*:*:*:*:*

EPSS

Процентиль: 38%
0.00167
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 8 лет назад

yadm (yet another dotfile manager) 1.10.0 has a race condition (related to the behavior of git commands in setting permissions for new files and directories), which potentially allows access to SSH and PGP keys.

CVSS3: 5.9
debian
больше 8 лет назад

yadm (yet another dotfile manager) 1.10.0 has a race condition (relate ...

CVSS3: 5.9
github
больше 3 лет назад

yadm (yet another dotfile manager) 1.10.0 has a race condition (related to the behavior of git commands in setting permissions for new files and directories), which potentially allows access to SSH and PGP keys.

EPSS

Процентиль: 38%
0.00167
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-362