CVE-2014-1831

EPSS 0.07%

Insecure use of temporary files in passenger

發布日:2018/10/10修改日:2026/4/28
也稱為:GHSA-c7j7-p5jq-26ffDEBIAN-CVE-2014-1831

描述

Phusion Passenger before 4.0.37 allows local users to write to certain files and directories via a symlink attack on (1) control_process.pid or a (2) generation-* file.

受影響套件(2)

參考連結(11)