Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-2121

Опубликовано: 01 нояб. 2016
Источник: redhat
CVSS3: 4
CVSS2: 2.1

Описание

A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitive information. A local, unprivileged user could possibly use this flaw to access unauthorized system information.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux OpenStack Platform 6 (Juno)redisWill not fix
Red Hat Enterprise Linux OpenStack Platform 7 (Kilo)redisWill not fix
Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) Operational ToolsredisWill not fix
Red Hat OpenStack Platform 8 (Liberty)redisWill not fix
Red Hat OpenStack Platform 8 (Liberty) Operational ToolsredisWill not fix
Red Hat OpenStack Platform 9 (Mitaka)redisWill not fix
Red Hat OpenStack Platform 9 (Mitaka) Operational ToolsredisWill not fix
Red Hat Software Collectionsrh-redis32-redisNot affected
Red Hat OpenStack Platform 10.0 (Newton)redisFixedRHSA-2017:322615.11.2017

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-732
https://bugzilla.redhat.com/show_bug.cgi?id=1390588redis: weak permissions on sensitive files

4 Medium

CVSS3

2.1 Low

CVSS2

Связанные уязвимости

CVSS3: 4
ubuntu
больше 7 лет назад

A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitive information. A local, unprivileged user could possibly use this flaw to access unauthorized system information.

CVSS3: 4
nvd
больше 7 лет назад

A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitive information. A local, unprivileged user could possibly use this flaw to access unauthorized system information.

CVSS3: 4
debian
больше 7 лет назад

A permissions flaw was found in redis, which sets weak permissions on ...

CVSS3: 5.5
github
больше 3 лет назад

A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitive information. A local, unprivileged user could possibly use this flaw to access unauthorized system information.

4 Medium

CVSS3

2.1 Low

CVSS2