CVE-2005-3148
EPSS 0.38%
Description
StoreBackup before 1.19 does not properly set the uid and guid for symbolic links (1) that are backed up by storeBackup.pl, or (2) recovered by storeBackupRecover.pl, which could cause files to be restored with incorrect ownership.
How to fix CVE-2005-3148
To remediate CVE-2005-3148, upgrade the affected package to a fixed version below.
- Debian/storebackup—upgrade to 1.19-1 or later
Is CVE-2005-3148 being exploited?
Low — EPSS is 0.4%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 1.19-1