Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1144

Опубликовано: 03 мар. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 3.3

Описание

The installer in PEAR 1.9.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1072.

РелизСтатусПримечание
dapper

released

5.1.2-1ubuntu3.22
devel

not-affected

5.3.5-1ubuntu7.2
hardy

released

5.2.4-2ubuntu5.15
karmic

released

5.2.10.dfsg.1-2ubuntu6.9
lucid

released

5.3.2-1ubuntu4.8
maverick

released

5.3.3-1ubuntu9.4
natty

released

5.3.5-1ubuntu7.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 32%
0.00119
Низкий

3.3 Low

CVSS2

Связанные уязвимости

redhat
около 15 лет назад

The installer in PEAR 1.9.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1072.

nvd
почти 15 лет назад

The installer in PEAR 1.9.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1072.

debian
почти 15 лет назад

The installer in PEAR 1.9.2 and earlier allows local users to overwrit ...

github
больше 3 лет назад

The installer in PEAR 1.9.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1072.

EPSS

Процентиль: 32%
0.00119
Низкий

3.3 Low

CVSS2