[Forgot Password]
Login  Register Subscribe

23631

 
 

126998

 
 

102010

 
 

909

 
 

80911

 
 

121

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2016-666 ---- sos

ID: oval:org.secpod.oval:def:1600380Date: (C)2016-05-19   (M)2018-01-05
Class: PATCHFamily: unix




An insecure temporary file use flaw was found in the way sos created certain sosreport files. A local attacker could possibly use this flaw to perform a symbolic link attack to reveal the contents of sosreport files, or in some cases modify arbitrary files and escalate their privileges on the system.

Platform:
Amazon Linux AMI
Product:
sos
Reference:
ALAS-2016-666
CVE-2015-7529
CVE    1
CVE-2015-7529
CPE    5
cpe:/o:canonical:ubuntu_linux:15.04
cpe:/a:sos:sos
cpe:/o:canonical:ubuntu_linux:15.10
cpe:/o:amazon:linux
...

© 2013 SecPod Technologies