Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-5254

Опубликовано: 21 нояб. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.3
CVSS3: 4.7

Описание

xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

5.0.1-1
cosmic

not-affected

5.0.1-1
devel

not-affected

5.0.1-1
disco

not-affected

5.0.1-1
esm-apps/bionic

not-affected

5.0.1-1
esm-apps/xenial

not-affected

5.0.1-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
lucid

ignored

end of life
precise

ignored

end of life

Показывать по

Ссылки на источники

EPSS

Процентиль: 30%
0.00111
Низкий

3.3 Low

CVSS2

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
nvd
около 6 лет назад

xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.

CVSS3: 4.7
debian
около 6 лет назад

xcfa before 5.0.1 creates temporary files insecurely which could allow ...

CVSS3: 4.7
github
больше 3 лет назад

xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.

EPSS

Процентиль: 30%
0.00111
Низкий

3.3 Low

CVSS2

4.7 Medium

CVSS3