Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2007-3852

Опубликовано: 10 авг. 2007
Источник: redhat
CVSS2: 1.9

Описание

The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.

Отчет

This issue did not affect the versions of sysstat as shipped with Red Hat Enterprise Linux 4. This issue has been addressed in Red Hat Enterprise Linux 5 via RHSA-2011:1005 advisory.

Дополнительная информация

Статус:

Low
Дефект:
CWE-377
https://bugzilla.redhat.com/show_bug.cgi?id=251200sysstat insecure temporary file usage

1.9 Low

CVSS2

Связанные уязвимости

ubuntu
почти 19 лет назад

The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.

nvd
почти 19 лет назад

The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.

debian
почти 19 лет назад

The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp ...

github
около 4 лет назад

The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.

oracle-oval
около 15 лет назад

ELSA-2011-1005: sysstat security, bug fix, and enhancement update (LOW)

1.9 Low

CVSS2