Описание
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | |
| devel | not-affected | |
| edgy | not-affected | |
| feisty | not-affected | |
| gutsy | not-affected | |
| upstream | released | 2.18 |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 81%
0.0154
Низкий
7.5 High
CVSS2
Связанные уязвимости
nvd
почти 20 лет назад
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
debian
почти 20 лет назад
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.1 ...
github
больше 3 лет назад
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
EPSS
Процентиль: 81%
0.0154
Низкий
7.5 High
CVSS2