Логотип exploitDog
bind:CVE-2017-17087
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-17087

Количество 8

Количество 8

ubuntu логотип

CVE-2017-17087

около 8 лет назад

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2017-17087

больше 8 лет назад

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2017-17087

около 8 лет назад

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2017-17087

около 8 лет назад

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp f ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-fmc8-f7rh-x4p9

больше 3 лет назад

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2022-05951

больше 8 лет назад

Уязвимость компонентов fileio.c, /etc/shadow, /etc/.shadow.swp текстового редактора Vim, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2102-1

больше 3 лет назад

Security update for vim

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4619-1

около 3 лет назад

Security update for vim

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-17087

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
0%
Низкий
около 8 лет назад
redhat логотип
CVE-2017-17087

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-17087

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
0%
Низкий
около 8 лет назад
debian логотип
CVE-2017-17087

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp f ...

CVSS3: 5.5
0%
Низкий
около 8 лет назад
github логотип
GHSA-fmc8-f7rh-x4p9

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an applicable group membership, as demonstrated by /etc/shadow owned by root:shadow mode 0640, but /etc/.shadow.swp owned by root:users mode 0640, a different vulnerability than CVE-2017-1000382.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-05951

Уязвимость компонентов fileio.c, /etc/shadow, /etc/.shadow.swp текстового редактора Vim, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.5
0%
Низкий
больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2022:2102-1

Security update for vim

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:4619-1

Security update for vim

около 3 лет назад

Уязвимостей на страницу