Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-3171

Опубликовано: 25 июл. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1
CVSS3: 5.5

Описание

sosreport 3.2 uses weak permissions for generated sosreport archives, which allows local users with access to /var/tmp/ to obtain sensitive information by reading the contents of the archive.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

3.1-1ubuntu2.1
precise

DNE

trusty

not-affected

3.1-1ubuntu2.1
trusty/esm

not-affected

3.1-1ubuntu2.1
upstream

released

3.2-2
utopic

not-affected

3.1-1ubuntu3
vivid

not-affected

3.2-2

Показывать по

Ссылки на источники

EPSS

Процентиль: 27%
0.00345
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

redhat
больше 11 лет назад

sosreport 3.2 uses weak permissions for generated sosreport archives, which allows local users with access to /var/tmp/ to obtain sensitive information by reading the contents of the archive.

CVSS3: 5.5
nvd
около 9 лет назад

sosreport 3.2 uses weak permissions for generated sosreport archives, which allows local users with access to /var/tmp/ to obtain sensitive information by reading the contents of the archive.

CVSS3: 5.5
debian
около 9 лет назад

sosreport 3.2 uses weak permissions for generated sosreport archives, ...

CVSS3: 5.5
github
больше 4 лет назад

sosreport sensitive information disclosure via weak permissions of the generated archives

EPSS

Процентиль: 27%
0.00345
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3