Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-24032

Опубликовано: 04 мар. 2021
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 1.9
CVSS3: 4.7

Описание

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

РелизСтатусПримечание
bionic

released

1.3.3+dfsg-2ubuntu1.2
devel

released

1.4.8+dfsg-2build1
esm-infra-legacy/trusty

DNE

esm-infra/bionic

released

1.3.3+dfsg-2ubuntu1.2
esm-infra/focal

released

1.4.4+dfsg-3ubuntu0.1
esm-infra/xenial

released

1.3.1+dfsg-1~ubuntu0.16.04.1+esm3
focal

released

1.4.4+dfsg-3ubuntu0.1
groovy

released

1.4.5+dfsg-4ubuntu0.1
hirsute

released

1.4.8+dfsg-2build1
impish

released

1.4.8+dfsg-2build1

Показывать по

EPSS

Процентиль: 20%
0.00062
Низкий

1.9 Low

CVSS2

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
почти 5 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

CVSS3: 4.7
nvd
почти 5 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

CVSS3: 4.7
msrc
около 1 года назад

Описание отсутствует

CVSS3: 4.7
debian
почти 5 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for ...

github
больше 3 лет назад

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

EPSS

Процентиль: 20%
0.00062
Низкий

1.9 Low

CVSS2

4.7 Medium

CVSS3