6.4

CVE-2005-4772

liby2util in Yet another Setup Tool (YaST) in SUSE Linux before 20051007 preserves permissions and ownerships when copying a remote repository, which might allow local users to read or modify sensitive files, possibly giving local users the ability to exploit CVE-2005-3013.

Data is provided by the National Vulnerability Database (NVD)
SuseSuse Linux School Server Versiongold
SuseSuse Sled Beagle Version10.0
SuseSuse Linux Version1.0 Editiondesktop
SuseSuse Linux Version8 Editionenterprise_server
SuseSuse Linux Version8.0 Editionretail_solution
SuseSuse Linux Version8.2 Editionpersonal
SuseSuse Linux Version8.2 Editionprofessional
SuseSuse Linux Version9.0
SuseSuse Linux Version9.0 Editionenterprise_server
SuseSuse Linux Version9.0 Editionpersonal
SuseSuse Linux Version9.0 Editionprofessional
SuseSuse Linux Version9.0 Editionx86_64
SuseSuse Linux Version9.1 Editionpersonal
SuseSuse Linux Version9.1 Editionprofessional
SuseSuse Linux Version9.1 Editionx86_64
SuseSuse Linux Version9.2 Editionpersonal
SuseSuse Linux Version9.2 Editionprofessional
SuseSuse Linux Version9.2 Editionx86_64
SuseSuse Linux Version9.3 Editionpersonal
SuseSuse Linux Version9.3 Editionprofessional
SuseSuse Linux Version9.3 Editionx86_64
SuseSuse Linux Version10.0 Editionoss
SuseSuse Linux Version10.0 Editionprofessional
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.28% 0.483
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N