Описание
kwallet-pam in KDE KWallet before 5.12.6 allows local users to obtain ownership of arbitrary files via a symlink attack.
Ссылки
- Issue TrackingPatchThird Party Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Third Party Advisory
- PatchVendor Advisory
- Issue TrackingPatchThird Party Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Third Party Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.12.6 (исключая)
cpe:2.3:a:kde:plasma:*:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:leap:42.3:*:*:*:*:*:*:*
EPSS
Процентиль: 26%
0.00092
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-59
Связанные уязвимости
CVSS3: 7.8
ubuntu
больше 7 лет назад
kwallet-pam in KDE KWallet before 5.12.6 allows local users to obtain ownership of arbitrary files via a symlink attack.
CVSS3: 7.8
debian
больше 7 лет назад
kwallet-pam in KDE KWallet before 5.12.6 allows local users to obtain ...
CVSS3: 7.8
github
больше 3 лет назад
kwallet-pam in KDE KWallet before 5.12.6 allows local users to obtain ownership of arbitrary files via a symlink attack.
EPSS
Процентиль: 26%
0.00092
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-59