Описание
The setup_logging function in log.h in SANLock uses world-writable permissions for /var/log/sanlock.log, which allows local users to overwrite the file content or bypass intended disk-quota restrictions via standard filesystem write operations.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 2.2-2 |
| cosmic | not-affected | 2.2-2 |
| devel | not-affected | 2.2-2 |
| esm-apps/bionic | not-affected | 2.2-2 |
| esm-apps/xenial | not-affected | 2.2-2 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [2.2-2]] |
| hardy | DNE | |
| lucid | DNE | |
| oneiric | DNE |
Показывать по
3.6 Low
CVSS2
Связанные уязвимости
The setup_logging function in log.h in SANLock uses world-writable permissions for /var/log/sanlock.log, which allows local users to overwrite the file content or bypass intended disk-quota restrictions via standard filesystem write operations.
The setup_logging function in log.h in SANLock uses world-writable permissions for /var/log/sanlock.log, which allows local users to overwrite the file content or bypass intended disk-quota restrictions via standard filesystem write operations.
The setup_logging function in log.h in SANLock uses world-writable per ...
The setup_logging function in log.h in SANLock uses world-writable permissions for /var/log/sanlock.log, which allows local users to overwrite the file content or bypass intended disk-quota restrictions via standard filesystem write operations.
3.6 Low
CVSS2