Опубликовано: 21 фев. 2020
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.9
CVSS3: 7.8
Описание
The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 1:7.7+19ubuntu7 |
| cosmic | ignored | end of life |
| devel | not-affected | |
| disco | ignored | end of life |
| eoan | ignored | end of life |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| esm-infra-legacy/xenial | not-affected | 1:7.7+12ubuntu1 |
| esm-infra/bionic | not-affected | 1:7.7+19ubuntu7 |
| esm-infra/focal | not-affected |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 44%
0.00566
Низкий
6.9 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
CVSS3: 7.8
nvd
больше 6 лет назад
The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.
CVSS3: 7.8
debian
больше 6 лет назад
The init script in the Debian x11-common package before 1:7.6+12 is vu ...
github
больше 4 лет назад
The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.
EPSS
Процентиль: 44%
0.00566
Низкий
6.9 Medium
CVSS2
7.8 High
CVSS3