Описание
The web interface in CUPS before 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1.7.4-1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1.7.2-0ubuntu1.1]] |
lucid | released | 1.4.3-1ubuntu1.12 |
precise | released | 1.5.3-0ubuntu8.4 |
trusty | released | 1.7.2-0ubuntu1.1 |
trusty/esm | DNE | trusty was released [1.7.2-0ubuntu1.1] |
upstream | released | 1.7.4-1 |
Показывать по
EPSS
1.2 Low
CVSS2
Связанные уязвимости
The web interface in CUPS before 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/.
The web interface in CUPS before 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/.
The web interface in CUPS before 1.7.4 allows local users in the lp gr ...
The web interface in CUPS before 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/.
Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность защищаемой информации
EPSS
1.2 Low
CVSS2