Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3294

Опубликовано: 24 июл. 2008
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.7

Описание

src/configure.in in Vim 5.0 through 7.1, when used for a build with Python support, does not ensure that the Makefile-conf temporary file has the intended ownership and permissions, which allows local users to execute arbitrary code by modifying this file during a time window, or by creating it ahead of time with permissions that prevent its modification by configure.

РелизСтатусПримечание
dapper

not-affected

build-time problem only
devel

not-affected

build-time problem only
feisty

not-affected

build-time problem only
gutsy

not-affected

build-time problem only
hardy

not-affected

build-time problem only
upstream

released

Показывать по

Ссылки на источники

EPSS

Процентиль: 34%
0.00132
Низкий

3.7 Low

CVSS2

Связанные уязвимости

redhat
около 17 лет назад

src/configure.in in Vim 5.0 through 7.1, when used for a build with Python support, does not ensure that the Makefile-conf temporary file has the intended ownership and permissions, which allows local users to execute arbitrary code by modifying this file during a time window, or by creating it ahead of time with permissions that prevent its modification by configure.

nvd
около 17 лет назад

src/configure.in in Vim 5.0 through 7.1, when used for a build with Python support, does not ensure that the Makefile-conf temporary file has the intended ownership and permissions, which allows local users to execute arbitrary code by modifying this file during a time window, or by creating it ahead of time with permissions that prevent its modification by configure.

debian
около 17 лет назад

src/configure.in in Vim 5.0 through 7.1, when used for a build with Py ...

github
больше 3 лет назад

src/configure.in in Vim 5.0 through 7.1, when used for a build with Python support, does not ensure that the Makefile-conf temporary file has the intended ownership and permissions, which allows local users to execute arbitrary code by modifying this file during a time window, or by creating it ahead of time with permissions that prevent its modification by configure.

EPSS

Процентиль: 34%
0.00132
Низкий

3.7 Low

CVSS2