Опубликовано: 21 нояб. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.3
CVSS3: 4.7
Описание
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 5.0.1-1 |
| cosmic | not-affected | 5.0.1-1 |
| devel | not-affected | 5.0.1-1 |
| disco | not-affected | 5.0.1-1 |
| esm-apps/bionic | not-affected | 5.0.1-1 |
| esm-apps/xenial | not-affected | 5.0.1-1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| lucid | ignored | end of life |
| precise | ignored | end of life |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 30%
0.00111
Низкий
3.3 Low
CVSS2
4.7 Medium
CVSS3
Связанные уязвимости
CVSS3: 4.7
nvd
около 6 лет назад
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.
CVSS3: 4.7
debian
около 6 лет назад
xcfa before 5.0.1 creates temporary files insecurely which could allow ...
CVSS3: 4.7
github
больше 3 лет назад
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.
EPSS
Процентиль: 30%
0.00111
Низкий
3.3 Low
CVSS2
4.7 Medium
CVSS3