Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-0343

Опубликовано: 28 янв. 2011
Источник: ubuntu
Приоритет: low
CVSS2: 6.9

Описание

Balabit syslog-ng 2.0, 3.0, 3.1, 3.2 OSE and PE, when running on FreeBSD or HP-UX, does not properly perform cast operations, which causes syslog-ng to use a default value of -1 to create log files with insecure permissions (07777), which allows local users to read and write to these log files.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

3.1.3-2
dapper

ignored

end of life
devel

not-affected

3.1.3-2
esm-apps/bionic

not-affected

3.1.3-2
esm-apps/xenial

not-affected

3.1.3-2
esm-infra-legacy/trusty

not-affected

3.1.3-2
hardy

ignored

end of life
karmic

ignored

end of life
lucid

ignored

end of life

Показывать по

Ссылки на источники

6.9 Medium

CVSS2

Связанные уязвимости

nvd
около 15 лет назад

Balabit syslog-ng 2.0, 3.0, 3.1, 3.2 OSE and PE, when running on FreeBSD or HP-UX, does not properly perform cast operations, which causes syslog-ng to use a default value of -1 to create log files with insecure permissions (07777), which allows local users to read and write to these log files.

debian
около 15 лет назад

Balabit syslog-ng 2.0, 3.0, 3.1, 3.2 OSE and PE, when running on FreeB ...

github
больше 3 лет назад

Balabit syslog-ng 2.0, 3.0, 3.1, 3.2 OSE and PE, when running on FreeBSD or HP-UX, does not properly perform cast operations, which causes syslog-ng to use a default value of -1 to create log files with insecure permissions (07777), which allows local users to read and write to these log files.

6.9 Medium

CVSS2