Описание
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | ignored | end of life |
| devel | released | 2.2.3pre1-3.1ubuntu4 |
| hardy | released | 2.2.3pre1-3ubuntu1.8.04.2 |
| intrepid | released | 2.2.3pre1-3ubuntu1.8.10.2 |
| jaunty | released | 2.2.3pre1-3ubuntu3.9.04.2 |
| karmic | released | 2.2.3pre1-3ubuntu3.9.10.2 |
| upstream | needed |
Показывать по
EPSS
1.9 Low
CVSS2
Связанные уязвимости
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss- ...
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
EPSS
1.9 Low
CVSS2