Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-13173

Опубликовано: 02 июл. 2019
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.4
CVSS3: 7.5

Описание

fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system's file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.

РелизСтатусПримечание
bionic

released

1.0.10-1ubuntu0.18.04.1
cosmic

ignored

end of life
devel

released

1.0.12-1
disco

released

1.0.10-1ubuntu0.19.04.2
eoan

released

1.0.12-1
esm-apps/bionic

released

1.0.10-1ubuntu0.18.04.1
esm-apps/focal

released

1.0.12-1
esm-apps/jammy

released

1.0.12-1
esm-apps/xenial

released

0.1.24-1ubuntu0.16.04.1~esm1
esm-infra-legacy/trusty

released

0.1.24-1ubuntu0.14.04.1~esm1

Показывать по

EPSS

Процентиль: 62%
0.0043
Низкий

6.4 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.3
redhat
больше 6 лет назад

fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system's file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.

CVSS3: 7.5
nvd
больше 6 лет назад

fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system's file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.

CVSS3: 7.5
debian
больше 6 лет назад

fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extra ...

suse-cvrf
больше 6 лет назад

Security update for nodejs8

suse-cvrf
больше 6 лет назад

Security update for nodejs10

EPSS

Процентиль: 62%
0.0043
Низкий

6.4 Medium

CVSS2

7.5 High

CVSS3