CVE-2011-3177 Information
Feb 14, 2021
cve
Description
The YaST2 network created files with world readable permissions which could have allowed local users to read sensitive material out of network configuration files like passwords for wireless networks.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://bugzilla.suse.com/show_bug.cgi?id=713661 https://github.com/yast/yast-core/commit/7fe2e3df308b8b6a901cb2cfd60f398df53219de
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: