CVE-2019-17365

  • Published Date: Wed 09 Oct 2019
  • Last Modified Date: Fri 18 Oct 2019

Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the user-profile directories is world writable.

Impact

Severity: MEDIUM
Exploitability Score: 3.9
Impact Score: 6.4
Attack Vector (AV): LOCAL
Attack Complexity (AC): LOW
Privileges Required (PR): NONE
Availability (A): PARTIAL

References (Advisories, Solutions, and Tools):



Note: This page is generated by our securitybot and has not been checked for errors. Feed Source: NVD