2.1

CVE-1999-1572

Exploit

cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.

Data is provided by the National Vulnerability Database (NVD)
DebianDebian Linux Version3.0
FreebsdFreebsd Version2.1.0
MandrakesoftMandrake Linux Version9.2
MandrakesoftMandrake Linux Version10.0
MandrakesoftMandrake Linux Version10.1
MandrakesoftMandrake Linux Versioncs2.1
MandrakesoftMandrake Linux Versioncs3.0
RedhatEnterprise Linux Version4.0 Editionadvanced_server
RedhatEnterprise Linux Version4.0 Editionenterprise_server
RedhatEnterprise Linux Version4.0 Editionworkstation
UbuntuUbuntu Linux Version4.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.11% 0.266
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:P/I:N/A:N