| ID |
CVE-2017-9079
|
| Sažetak |
Dropbear before 2017.75 might allow local users to read certain files as root, if the file has the authorized_keys file format with a command= option. This occurs because ~/.ssh/authorized_keys is read with root privileges and symlinks are followed. |
| Reference |
|
| CVSS |
| Base: | 4.7 |
| Impact: | 6.9 |
| Exploitability: | 3.4 |
|
| Pristup |
| Vektor | Složenost | Autentikacija |
| LOCAL |
MEDIUM |
NONE |
|
| Impact |
| Povjerljivost | Cjelovitost | Dostupnost |
| COMPLETE |
NONE |
NONE |
|
| CVSS vektor |
AV:L/AC:M/Au:N/C:C/I:N/A:N |
| Zadnje važnije ažuriranje |
04-10-2019 - 09:15 |
| Objavljeno |
19-05-2017 - 14:29 |