Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1072

Опубликовано: 03 мар. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 3.3

Описание

The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.

РелизСтатусПримечание
dapper

released

5.1.2-1ubuntu3.22
devel

not-affected

hardy

released

5.2.4-2ubuntu5.15
karmic

released

5.2.10.dfsg.1-2ubuntu6.9
lucid

released

5.3.2-1ubuntu4.8
maverick

released

5.3.3-1ubuntu9.4
natty

not-affected

upstream

released

5.2.11.dsfg.1-1

Показывать по

EPSS

Процентиль: 24%
0.00077
Низкий

3.3 Low

CVSS2

Связанные уязвимости

redhat
почти 15 лет назад

The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.

nvd
больше 14 лет назад

The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.

debian
больше 14 лет назад

The installer in PEAR before 1.9.2 allows local users to overwrite arb ...

github
больше 3 лет назад

The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.

oracle-oval
больше 13 лет назад

ELSA-2011-1741: php-pear security and bug fix update (LOW)

EPSS

Процентиль: 24%
0.00077
Низкий

3.3 Low

CVSS2