Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-14804

Опубликовано: 01 мар. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 9.9

Описание

The build package before 20171128 did not check directory names during extraction of build results that allowed untrusted builds to write outside of the target system,allowing escape out of buildroots.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

not-affected

20180302-3
devel

not-affected

20180302-3
disco

not-affected

20180302-3
eoan

not-affected

20180302-3
esm-apps/bionic

needed

esm-apps/focal

not-affected

20180302-3
esm-apps/jammy

not-affected

20180302-3
esm-apps/noble

not-affected

20180302-3

Показывать по

EPSS

Процентиль: 62%
0.00431
Низкий

5 Medium

CVSS2

9.9 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.9
nvd
почти 8 лет назад

The build package before 20171128 did not check directory names during extraction of build results that allowed untrusted builds to write outside of the target system,allowing escape out of buildroots.

CVSS3: 9.9
debian
почти 8 лет назад

The build package before 20171128 did not check directory names during ...

suse-cvrf
почти 7 лет назад

Security update for build

suse-cvrf
почти 7 лет назад

Security update for build

CVSS3: 5.3
github
больше 3 лет назад

The build package before 20171128 did not check directory names during extraction of build results that allowed untrusted builds to write outside of the target system,allowing escape out of buildroots.

EPSS

Процентиль: 62%
0.00431
Низкий

5 Medium

CVSS2

9.9 Critical

CVSS3