1.9

CVE-2011-0523

Exploit
gypsy 0.8 does not properly restrict the files that can be read while running with root privileges, which allows local users to read otherwise restricted files via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IainGypsy Version0.8
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.48% 0.373
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 1.9 3.4 2.9
AV:L/AC:M/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://cgit.freedesktop.org/gypsy/commit/?id=40101707cddb319481133b2a137294b6b669bd16
Patch
Exploit
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106919.html
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106927.html
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/107020.html
http://lists.opensuse.org/opensuse-updates/2012-07/msg00034.html
http://secunia.com/advisories/49991
Vendor Advisory
http://www.openwall.com/lists/oss-security/2011/01/24/10
http://www.openwall.com/lists/oss-security/2011/01/25/10
https://bugs.freedesktop.org/show_bug.cgi?id=33431
https://bugs.launchpad.net/ubuntu/+source/gypsy/+bug/690323