Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2431

Опубликовано: 15 июн. 2010
Источник: redhat
CVSS2: 3.2
EPSS Низкий

Описание

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

Отчет

This issue did not affect the versions of CUPS as shipped with Red Hat Enterprise Linux 3 or 4. It was addressed in Red Hat Enterprise Linux 5 via RHSA-2010:0811.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3cupsAffected
Red Hat Enterprise Linux 4cupsNot affected
Red Hat Enterprise Linux 6cupsAffected
Red Hat Enterprise Linux 5cupsFixedRHSA-2010:081129.10.2010

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=605397cups: latent privilege escalation vulnerability

EPSS

Процентиль: 8%
0.0003
Низкий

3.2 Low

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

nvd
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

debian
больше 15 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, wit ...

github
больше 3 лет назад

The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.

oracle-oval
около 15 лет назад

ELSA-2010-0811: cups security update (IMPORTANT)

EPSS

Процентиль: 8%
0.0003
Низкий

3.2 Low

CVSS2