[Forgot Password]
Login  Register Subscribe

23631

 
 

126998

 
 

101924

 
 

909

 
 

80911

 
 

121

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2016-0188 -- Oracle sos

ID: oval:org.secpod.oval:def:1501346Date: (C)2016-06-02   (M)2018-01-05
Class: PATCHFamily: unix




An insecure temporary file use flaw was found in the way sos created certain sosreport files. A local attacker could possibly use this flaw to perform a symbolic link attack to reveal the contents of sosreport files, or in some cases modify arbitrary files and escalate their privileges on the system.

Platform:
Oracle Linux 7
Product:
sos
Reference:
ELSA-2016-0188
CVE-2015-7529
CVE    1
CVE-2015-7529
CPE    5
cpe:/o:canonical:ubuntu_linux:15.04
cpe:/a:sos:sos
cpe:/o:canonical:ubuntu_linux:15.10
cpe:/o:oracle:linux:7
...

© 2013 SecPod Technologies