[Forgot Password]
Login  Register Subscribe

23631

 
 

115084

 
 

97147

 
 

909

 
 

78730

 
 

109

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2016-666 ---- sos

ID: oval:org.secpod.oval:def:1600380Date: (C)2016-05-19   (M)2017-11-10
Class: PATCHFamily: unix




An insecure temporary file use flaw was found in the way sos created certain sosreport files. A local attacker could possibly use this flaw to perform a symbolic link attack to reveal the contents of sosreport files, or in some cases modify arbitrary files and escalate their privileges on the system.

Platform:
Amazon Linux AMI
Product:
sos
Reference:
ALAS-2016-666
CVE-2015-7529
CVE    1
CVE-2015-7529
CPE    2
cpe:/a:sos:sos
cpe:/o:amazon:linux

© 2013 SecPod Technologies