Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-6412

Опубликовано: 25 нояб. 2013
Источник: redhat
CVSS2: 2.6

Описание

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7augeasNot affected
Red Hat OpenStack Platform 3augeasNot affected
Red Hat OpenStack Platform 4augeasNot affected
Red Hat Storage 2.1augeasNot affected
Red Hat Enterprise Linux 6augeasFixedRHSA-2014:004420.01.2014

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1034261augeas: incorrect permissions set on newly created files

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
около 12 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

nvd
около 12 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

debian
около 12 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1 ...

github
больше 3 лет назад

The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be used for new files and allows local users to modify the files via unspecified vectors.

oracle-oval
около 12 лет назад

ELSA-2014-0044: augeas security update (MODERATE)

2.6 Low

CVSS2