Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-29799

Опубликовано: 27 апр. 2022
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal to escape from the “/etc/networkd-dispatcher” base directory.

A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher and lead to the directory traversal escaping from the “/etc/networkd-dispatcher” base directory.

Отчет

This issue does not affect Red Hat Enterprise Linux 6, 7, 8, and 9 as the networkd-dispatcher package is currently not provided in any of our supported products.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6networkd-dispatcherNot affected
Red Hat Enterprise Linux 7networkd-dispatcherNot affected
Red Hat Enterprise Linux 8networkd-dispatcherNot affected
Red Hat Enterprise Linux 9networkd-dispatcherNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2079999networkd-dispatcher: Directory traversal

EPSS

Процентиль: 70%
0.00651
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal to escape from the “/etc/networkd-dispatcher” base directory.

CVSS3: 5.5
nvd
больше 3 лет назад

A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal to escape from the “/etc/networkd-dispatcher” base directory.

CVSS3: 5.5
debian
больше 3 лет назад

A vulnerability was found in networkd-dispatcher. This flaw exists bec ...

CVSS3: 5.5
github
больше 3 лет назад

A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal to escape from the “/etc/networkd-dispatcher” base directory.

EPSS

Процентиль: 70%
0.00651
Низкий

5.5 Medium

CVSS3