Описание
Fabric before 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on (1) a /tmp/fab.*.tar file or (2) certain other files in the top level of /tmp/.
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | not-affected | 1.8.2-1 |
devel | not-affected | 1.8.2-1 |
esm-apps/bionic | not-affected | 1.8.2-1 |
esm-apps/xenial | not-affected | 1.8.2-1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [1.8.2-1]] |
hardy | DNE | |
lucid | ignored | end of life |
maverick | ignored | end of life |
natty | ignored | end of life |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 7%
0.00032
Низкий
4.4 Medium
CVSS2
Связанные уязвимости
nvd
около 14 лет назад
Fabric before 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on (1) a /tmp/fab.*.tar file or (2) certain other files in the top level of /tmp/.
debian
около 14 лет назад
Fabric before 1.1.0 allows local users to overwrite arbitrary files vi ...
EPSS
Процентиль: 7%
0.00032
Низкий
4.4 Medium
CVSS2