Do your applications use this vulnerable package?
Test your applications
Overview
systemd, when updating file permissions, allows local users to change the permissions and SELinux security contexts for arbitrary files via a symlink attack on unspecified files.
References
CVSS Score
4.4
low severity
-
Attack VectorLocal
-
Attack ComplexityLow
-
Privileges RequiredNone
-
User InteractionRequired
-
ScopeUnchanged
-
ConfidentialityLow
-
IntegrityLow
-
AvailabilityNone
- CVE
- CVE-2013-4392
- CWE
- CWE-59
- Snyk ID
- SNYK-DEBIAN10-SYSTEMD-305144
- Disclosed
- 28 Oct, 2013
- Published
- 28 Oct, 2013