Количество 15
Количество 15
GHSA-6wxm-mpqj-6jpf
Insecure Temporary File usage in github.com/golang/glog

CVE-2024-45339
When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file in its place. When that privileged process runs, it will follow the planted symlink and overwrite that sensitive file. To fix that, glog now causes the program to exit (with status code 2) when it finds that the configured log file already exists.

CVE-2024-45339
When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file in its place. When that privileged process runs, it will follow the planted symlink and overwrite that sensitive file. To fix that, glog now causes the program to exit (with status code 2) when it finds that the configured log file already exists.

CVE-2024-45339
When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file in its place. When that privileged process runs, it will follow the planted symlink and overwrite that sensitive file. To fix that, glog now causes the program to exit (with status code 2) when it finds that the configured log file already exists.

CVE-2024-45339
CVE-2024-45339
When logs are written to a widely-writable directory (the default), an ...

SUSE-SU-2025:0611-1
Security update for google-osconfig-agent

SUSE-SU-2025:0580-1
Security update for google-osconfig-agent

SUSE-SU-2025:02150-1
Security update for google-osconfig-agent

SUSE-SU-2025:02149-1
Security update for google-osconfig-agent

BDU:2025-02785
Уязвимость функции createInDir библиотеки glog языка программирования Golang, позволяющая нарушителю повысить свои привилегии и получить несанкционированный доступ к защищаемой информации

ROS-20250814-08
Уязвимость golang-github-glog-devel

SUSE-SU-2025:0623-1
Security update for grafana

SUSE-SU-2025:0429-1
Security update for govulncheck-vulndb

SUSE-SU-2025:0297-1
Security update for govulncheck-vulndb
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-6wxm-mpqj-6jpf Insecure Temporary File usage in github.com/golang/glog | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад | |
![]() | CVE-2024-45339 When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file in its place. When that privileged process runs, it will follow the planted symlink and overwrite that sensitive file. To fix that, glog now causes the program to exit (with status code 2) when it finds that the configured log file already exists. | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад |
![]() | CVE-2024-45339 When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file in its place. When that privileged process runs, it will follow the planted symlink and overwrite that sensitive file. To fix that, glog now causes the program to exit (with status code 2) when it finds that the configured log file already exists. | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад |
![]() | CVE-2024-45339 When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file in its place. When that privileged process runs, it will follow the planted symlink and overwrite that sensitive file. To fix that, glog now causes the program to exit (with status code 2) when it finds that the configured log file already exists. | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад |
![]() | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад | |
CVE-2024-45339 When logs are written to a widely-writable directory (the default), an ... | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад | |
![]() | SUSE-SU-2025:0611-1 Security update for google-osconfig-agent | 0% Низкий | 7 месяцев назад | |
![]() | SUSE-SU-2025:0580-1 Security update for google-osconfig-agent | 0% Низкий | 7 месяцев назад | |
![]() | SUSE-SU-2025:02150-1 Security update for google-osconfig-agent | 0% Низкий | 2 месяца назад | |
![]() | SUSE-SU-2025:02149-1 Security update for google-osconfig-agent | 0% Низкий | 2 месяца назад | |
![]() | BDU:2025-02785 Уязвимость функции createInDir библиотеки glog языка программирования Golang, позволяющая нарушителю повысить свои привилегии и получить несанкционированный доступ к защищаемой информации | CVSS3: 7.1 | 0% Низкий | 7 месяцев назад |
![]() | ROS-20250814-08 Уязвимость golang-github-glog-devel | CVSS3: 7.1 | 0% Низкий | 23 дня назад |
![]() | SUSE-SU-2025:0623-1 Security update for grafana | 7 месяцев назад | ||
![]() | SUSE-SU-2025:0429-1 Security update for govulncheck-vulndb | 7 месяцев назад | ||
![]() | SUSE-SU-2025:0297-1 Security update for govulncheck-vulndb | 7 месяцев назад |
Уязвимостей на страницу