Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3154

Опубликовано: 17 апр. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 1.9

Описание

DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before 1:0.142.23.1, 1:0.150.x before 1:0.150.5.1, and 1:0.152.x before 1:0.152.25.5 does not properly create temporary files, which allows local users to obtain the XAUTHORITY file content for a user via a symlink attack on the temporary file.

РелизСтатусПримечание
devel

released

1:0.154.5
hardy

released

1:0.87.31.1
lucid

released

1:0.134.11.1
maverick

released

1:0.142.23.1
natty

released

1:0.150.5.1
oneiric

released

1:0.152.25.5
upstream

needs-triage

Показывать по

EPSS

Процентиль: 33%
0.00133
Низкий

1.9 Low

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before 1:0.142.23.1, 1:0.150.x before 1:0.150.5.1, and 1:0.152.x before 1:0.152.25.5 does not properly create temporary files, which allows local users to obtain the XAUTHORITY file content for a user via a symlink attack on the temporary file.

debian
почти 12 лет назад

DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1 ...

github
больше 3 лет назад

DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before 1:0.142.23.1, 1:0.150.x before 1:0.150.5.1, and 1:0.152.x before 1:0.152.25.5 does not properly create temporary files, which allows local users to obtain the XAUTHORITY file content for a user via a symlink attack on the temporary file.

EPSS

Процентиль: 33%
0.00133
Низкий

1.9 Low

CVSS2