Логотип exploitDog
bind:"CVE-2011-1089" OR bind:"CVE-2009-5064"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2011-1089" OR bind:"CVE-2009-5064"

Количество 25

Количество 25

nvd логотип

CVE-2011-1089

больше 14 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

CVSS2: 3.3
EPSS: Низкий
debian логотип

CVE-2011-1089

больше 14 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 ...

CVSS2: 3.3
EPSS: Низкий
github логотип

GHSA-jx79-x2m5-439p

больше 3 лет назад

** DISPUTED ** ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc."

EPSS: Низкий
github логотип

GHSA-h832-96qp-642g

около 3 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

EPSS: Низкий
fstec логотип

BDU:2015-09685

больше 11 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 6.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2011-1089

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

CVSS2: 3.3
0%
Низкий
больше 14 лет назад
debian логотип
CVE-2011-1089

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 ...

CVSS2: 3.3
0%
Низкий
больше 14 лет назад
github логотип
GHSA-jx79-x2m5-439p

** DISPUTED ** ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc."

0%
Низкий
больше 3 лет назад
github логотип
GHSA-h832-96qp-642g

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

0%
Низкий
около 3 лет назад
fstec логотип
BDU:2015-09685

Уязвимости операционной системы Gentoo Linux, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 6.9
больше 11 лет назад

Уязвимостей на страницу