Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2431

Опубликовано: 15 июн. 2010
Источник: redhat
CVSS2: 3.2

Описание

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

Отчет

This issue did not affect the versions of CUPS as shipped with Red Hat Enterprise Linux 3 or 4. It was addressed in Red Hat Enterprise Linux 5 via RHSA-2010:0811.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3cupsAffected
Red Hat Enterprise Linux 4cupsNot affected
Red Hat Enterprise Linux 6cupsAffected
Red Hat Enterprise Linux 5cupsFixedRHSA-2010:081129.10.2010

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=605397cups: latent privilege escalation vulnerability

3.2 Low

CVSS2

Связанные уязвимости

ubuntu
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

nvd
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

debian
около 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, wit ...

github
около 3 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

oracle-oval
больше 14 лет назад

ELSA-2010-0811: cups security update (IMPORTANT)

3.2 Low

CVSS2