Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-7529

Опубликовано: 06 нояб. 2017
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.6
CVSS3: 7.8

Описание

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

РелизСтатусПримечание
devel

not-affected

3.2+git276-g7da50d6-3
esm-infra-legacy/trusty

released

3.1-1ubuntu2.2
precise

DNE

trusty

released

3.1-1ubuntu2.2
trusty/esm

released

3.1-1ubuntu2.2
upstream

released

3.2+git276-g7da50d6-3
vivid

released

3.2-2ubuntu0.1
wily

released

3.2-2ubuntu1.1

Показывать по

EPSS

Процентиль: 18%
0.00058
Низкий

4.6 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

redhat
почти 10 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

CVSS3: 7.8
nvd
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.

CVSS3: 7.8
debian
почти 8 лет назад

sosreport in SoS 3.x allows local users to obtain sensitive informatio ...

CVSS3: 7.8
github
больше 3 лет назад

SoSReport Predictable Tmp File Names

oracle-oval
больше 9 лет назад

ELSA-2016-0188: sos security and bug fix update (MODERATE)

EPSS

Процентиль: 18%
0.00058
Низкий

4.6 Medium

CVSS2

7.8 High

CVSS3