Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-47515

Опубликовано: 24 дек. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.1

Описание

A vulnerability was found in Pagure. Support of symbolic links during repository archiving of repositories allows the disclosure of local files. This flaw allows a malicious user to take advantage of the Pagure instance.

РелизСтатусПримечание
devel

not-affected

5.14.1+dfsg-7
esm-apps/focal

released

5.8.1+dfsg-3ubuntu0.1~esm1
esm-apps/jammy

released

5.11.3+dfsg-1ubuntu0.1
esm-apps/noble

released

5.11.3+dfsg-2.1ubuntu0.2
focal

ignored

end of standard support, was needs-triage
jammy

released

5.11.3+dfsg-1ubuntu0.1
noble

released

5.11.3+dfsg-2.1ubuntu0.2
oracular

ignored

end of life, was needs-triage
plucky

ignored

end of life, was needs-triage
questing

not-affected

5.14.1+dfsg-7

Показывать по

EPSS

Процентиль: 45%
0.00564
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
больше 1 года назад

A vulnerability was found in Pagure. Support of symbolic links during repository archiving of repositories allows the disclosure of local files. This flaw allows a malicious user to take advantage of the Pagure instance.

CVSS3: 8.1
debian
больше 1 года назад

A vulnerability was found in Pagure. Support of symbolic links during ...

CVSS3: 8.1
github
больше 1 года назад

A vulnerability was found in Pagure. Support of symbolic links during repository archiving of repositories allows the disclosure of local files. This flaw allows a malicious user to take advantage of the Pagure instance.

EPSS

Процентиль: 45%
0.00564
Низкий

8.1 High

CVSS3