Описание
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Релиз | Статус | Примечание |
---|---|---|
dapper | not-affected | |
devel | not-affected | |
edgy | not-affected | |
feisty | not-affected | |
gutsy | not-affected | |
upstream | released | 2.18 |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 81%
0.0154
Низкий
7.5 High
CVSS2
Связанные уязвимости
nvd
больше 19 лет назад
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
debian
больше 19 лет назад
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.1 ...
github
больше 3 лет назад
The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
EPSS
Процентиль: 81%
0.0154
Низкий
7.5 High
CVSS2