Описание
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
Релиз | Статус | Примечание |
---|---|---|
dapper | ignored | end of life |
devel | released | 2.2.3pre1-3.1ubuntu4 |
hardy | released | 2.2.3pre1-3ubuntu1.8.04.2 |
intrepid | released | 2.2.3pre1-3ubuntu1.8.10.2 |
jaunty | released | 2.2.3pre1-3ubuntu3.9.04.2 |
karmic | released | 2.2.3pre1-3ubuntu3.9.10.2 |
upstream | needed |
Показывать по
1.9 Low
CVSS2
Связанные уязвимости
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss- ...
The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.
1.9 Low
CVSS2