Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3870

Опубликовано: 27 окт. 2011
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 6.3

Описание

Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to modify the permissions of arbitrary files via a symlink attack on the SSH authorized_keys file.

РелизСтатусПримечание
devel

released

2.7.1-1ubuntu3
hardy

not-affected

lucid

released

0.25.4-2ubuntu6.3
maverick

released

2.6.1-0ubuntu2.2
natty

released

2.6.4-2ubuntu2.3
upstream

released

2.6.11, 2.7.5

Показывать по

EPSS

Процентиль: 27%
0.00352
Низкий

6.3 Medium

CVSS2

Связанные уязвимости

redhat
почти 15 лет назад

Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to modify the permissions of arbitrary files via a symlink attack on the SSH authorized_keys file.

nvd
почти 15 лет назад

Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to modify the permissions of arbitrary files via a symlink attack on the SSH authorized_keys file.

debian
почти 15 лет назад

Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows loca ...

github
около 4 лет назад

Puppet allows local users to modify the permissions of arbitrary files

fstec
больше 14 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 27%
0.00352
Низкий

6.3 Medium

CVSS2