[Forgot Password]
Login  Register Subscribe

24003

 
 

131573

 
 

108530

 
 

909

 
 

85343

 
 

134

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2016-666 ---- sos

ID: oval:org.secpod.oval:def:1600380Date: (C)2016-05-19   (M)2018-05-06
Class: PATCHFamily: unix




An insecure temporary file use flaw was found in the way sos created certain sosreport files. A local attacker could possibly use this flaw to perform a symbolic link attack to reveal the contents of sosreport files, or in some cases modify arbitrary files and escalate their privileges on the system.

Platform:
Amazon Linux AMI
Product:
sos
Reference:
ALAS-2016-666
CVE-2015-7529
CVE    1
CVE-2015-7529
CPE    2
cpe:/a:sos:sos
cpe:/o:amazon:linux

© SecPod Technologies