Описание
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 6.3-8ubuntu1 |
| esm-infra-legacy/trusty | ignored | |
| lucid | ignored | end of life |
| precise | ignored | |
| quantal | ignored | end of life |
| saucy | ignored | end of life |
| trusty | ignored | |
| trusty/esm | ignored | |
| upstream | released | 6.3-8 |
| utopic | ignored | end of life |
Показывать по
EPSS
3.3 Low
CVSS2
Связанные уязвимости
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 a ...
The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
EPSS
3.3 Low
CVSS2