CVE-2014-2277

HIGH7.1EPSS 0.06%
發布日:2017/10/17修改日:2026/4/28
也稱為:DEBIAN-CVE-2014-2277

描述

The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH7.1CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

參考連結(1)