Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-0219

Опубликовано: 23 янв. 2013
Источник: redhat
CVSS2: 3.7

Описание

System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on another user's files.

Дополнительная информация

Статус:

Low
Дефект:
CWE-367
https://bugzilla.redhat.com/show_bug.cgi?id=884254sssd: TOCTOU race conditions by copying and removing directory trees

3.7 Low

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on another user's files.

nvd
почти 13 лет назад

System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on another user's files.

debian
почти 13 лет назад

System Security Services Daemon (SSSD) before 1.9.4, when (1) creating ...

github
почти 4 года назад

System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on another user's files.

oracle-oval
больше 12 лет назад

ELSA-2013-1319: sssd security and bug fix update (LOW)

3.7 Low

CVSS2