Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-1624

Опубликовано: 28 янв. 2014
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 3.3

Описание

Race condition in the xdg.BaseDirectory.get_runtime_dir function in python-xdg 0.25 allows local users to overwrite arbitrary files by pre-creating /tmp/pyxdg-runtime-dir-fallback-victim to point to a victim-owned location, then replacing it with a symlink to an attacker-controlled location once the get_runtime_dir function is called.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

0.25-4
cosmic

not-affected

0.25-4
devel

not-affected

0.25-4
disco

not-affected

0.25-4
esm-infra-legacy/trusty

released

0.25-4
esm-infra/bionic

not-affected

0.25-4
esm-infra/xenial

released

0.25-4
lucid

ignored

end of life
precise

ignored

end of life

Показывать по

Ссылки на источники

EPSS

Процентиль: 14%
0.00046
Низкий

3.3 Low

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

Race condition in the xdg.BaseDirectory.get_runtime_dir function in python-xdg 0.25 allows local users to overwrite arbitrary files by pre-creating /tmp/pyxdg-runtime-dir-fallback-victim to point to a victim-owned location, then replacing it with a symlink to an attacker-controlled location once the get_runtime_dir function is called.

nvd
около 12 лет назад

Race condition in the xdg.BaseDirectory.get_runtime_dir function in python-xdg 0.25 allows local users to overwrite arbitrary files by pre-creating /tmp/pyxdg-runtime-dir-fallback-victim to point to a victim-owned location, then replacing it with a symlink to an attacker-controlled location once the get_runtime_dir function is called.

debian
около 12 лет назад

Race condition in the xdg.BaseDirectory.get_runtime_dir function in py ...

suse-cvrf
около 6 лет назад

Security update for python-xdg

suse-cvrf
больше 6 лет назад

Security update for python-xdg

EPSS

Процентиль: 14%
0.00046
Низкий

3.3 Low

CVSS2