Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-3246

Опубликовано: 11 авг. 2015
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 7.2

Описание

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the modification. NOTE: this issue can be combined with CVE-2015-3245 to gain privileges.

РелизСтатусПримечание
artful

not-affected

1:0.62~dfsg-0.1
bionic

not-affected

1:0.62~dfsg-0.1
cosmic

not-affected

1:0.62~dfsg-0.1
devel

needs-triage

disco

not-affected

1:0.62~dfsg-0.1
eoan

not-affected

1:0.62~dfsg-0.1
esm-apps/bionic

not-affected

1:0.62~dfsg-0.1
esm-apps/focal

not-affected

1:0.62~dfsg-0.1
esm-apps/jammy

not-affected

1:0.62~dfsg-0.1
esm-apps/noble

not-affected

1:0.62~dfsg-0.1

Показывать по

Ссылки на источники

EPSS

Процентиль: 95%
0.20312
Средний

7.2 High

CVSS2

Связанные уязвимости

redhat
около 10 лет назад

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the modification. NOTE: this issue can be combined with CVE-2015-3245 to gain privileges.

nvd
около 10 лет назад

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the modification. NOTE: this issue can be combined with CVE-2015-3245 to gain privileges.

debian
около 10 лет назад

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhe ...

github
больше 3 лет назад

libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the modification. NOTE: this issue can be combined with CVE-2015-3245 to gain privileges.

oracle-oval
около 10 лет назад

ELSA-2015-1483: libuser security update (IMPORTANT)

EPSS

Процентиль: 95%
0.20312
Средний

7.2 High

CVSS2