CVE-2009-4235
EPSS 0.04%acpid - weak file permissions
發布日:2009/12/8修改日:2026/4/28
也稱為:DEBIAN-CVE-2009-4235
描述
acpid 1.0.4 sets an unrestrictive umask, which might allow local users to leverage weak permissions on /var/log/acpid, and obtain sensitive information by reading this file or cause a denial of service by overwriting this file, a different vulnerability than CVE-2009-4033.
受影響套件(2)
- Debian/acpidfrom 0, < 1.0.6
- Debian/acpidfrom 0, < 1.0.4-5etch2