[Forgot Password]
Login  Register Subscribe

24128

 
 

131615

 
 

112965

 
 

909

 
 

87888

 
 

136

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2016-666 ---- sos

ID: oval:org.secpod.oval:def:1600380Date: (C)2016-05-19   (M)2018-05-06
Class: PATCHFamily: unix




An insecure temporary file use flaw was found in the way sos created certain sosreport files. A local attacker could possibly use this flaw to perform a symbolic link attack to reveal the contents of sosreport files, or in some cases modify arbitrary files and escalate their privileges on the system.

Platform:
Amazon Linux AMI
Product:
sos
Reference:
ALAS-2016-666
CVE-2015-7529
CVE    1
CVE-2015-7529
CPE    2
cpe:/a:sos:sos
cpe:/o:amazon:linux

© SecPod Technologies