CVE-2004-2778 Information
Feb 14, 2021
cve
Description
Ebuild in Gentoo may change directory and file permissions depending on the order of installed packages which allows local users to read or write to restricted directories or execute restricted commands via navigating to the affected directories or executing the affected commands.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Reference
http://www.openwall.com/lists/oss-security/2017/01/28/7 https://bugs.gentoo.org/show_bug.cgi?id=141619 https://bugs.gentoo.org/show_bug.cgi?id=396153 https://bugs.gentoo.org/show_bug.cgi?id=58611 https://bugs.gentoo.org/show_bug.cgi?id=607426 https://bugs.gentoo.org/show_bug.cgi?id=607430
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
NONE
Base Severity
7.1
Share on: