Описание
The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.
Дополнительная информация
Статус:
Low
Дефект:
CWE-377
https://bugzilla.redhat.com/show_bug.cgi?id=893307openshift-origin-port-proxy: openshift-port-proxy-cfg lockwrap() tmp file creation
EPSS
Процентиль: 18%
0.00056
Низкий
2.1 Low
CVSS2
Связанные уязвимости
nvd
почти 13 лет назад
The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.
github
почти 4 года назад
The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.
EPSS
Процентиль: 18%
0.00056
Низкий
2.1 Low
CVSS2