Уязвимость облегчения атаки через символьные ссылки в Python Imaging Library (PIL) и Pillow из-за использования имён временных файлов в командной строке
Описание
Обнаружена уязвимость в скриптах:
JpegImagePlugin.py,EpsImagePlugin.py.
Проблема затрагивает Python Imaging Library (PIL) версии 1.1.7 и более ранние, а также Pillow до версии 2.3.1. Скрипты используют имена временных файлов в командной строке, что облегчает локальным пользователям проведение атак через символьные ссылки (symlink attacks) путём анализа списка процессов.
Затронутые версии ПО
- Python Imaging Library (PIL) 1.1.7 и более ранние версии
- Pillow до версии 2.3.1
Тип уязвимости
Атака через символьные ссылки
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | python-imaging | Will not fix | ||
| Red Hat Enterprise Linux 6 | python-imaging | Will not fix | ||
| Red Hat Enterprise Linux 7 | python-pillow | Will not fix |
Показывать по
Дополнительная информация
Статус:
EPSS
2.1 Low
CVSS2
Связанные уязвимости
The (1) JpegImagePlugin.py and (2) EpsImagePlugin.py scripts in Python Image Library (PIL) 1.1.7 and earlier and Pillow before 2.3.1 uses the names of temporary files on the command line, which makes it easier for local users to conduct symlink attacks by listing the processes.
The (1) JpegImagePlugin.py and (2) EpsImagePlugin.py scripts in Python Image Library (PIL) 1.1.7 and earlier and Pillow before 2.3.1 uses the names of temporary files on the command line, which makes it easier for local users to conduct symlink attacks by listing the processes.
The (1) JpegImagePlugin.py and (2) EpsImagePlugin.py scripts in Python ...
EPSS
2.1 Low
CVSS2