6.3
CVSSv2

CVE-2011-2473

Published: 09/06/2011 Updated: 29/08/2017
CVSS v2 Base Score: 6.3 | Impact Score: 9.2 | Exploitability Score: 3.4
VMScore: 561
Vector: AV:L/AC:M/Au:N/C:N/I:C/A:C

Vulnerability Summary

The do_dump_data function in utils/opcontrol in OProfile 0.9.6 and previous versions might allow local users to create or overwrite arbitrary files via a crafted --session-dir argument in conjunction with a symlink attack on the opd_pipe file, a different vulnerability than CVE-2011-1760.

Vulnerable Product Search on Vulmon Subscribe to Product

maynard johnson oprofile 0.5.3

maynard johnson oprofile 0.7.1

maynard johnson oprofile 0.8

maynard johnson oprofile 0.4

maynard johnson oprofile 0.3

maynard johnson oprofile 0.5

maynard johnson oprofile 0.5.2

maynard johnson oprofile 0.9

maynard johnson oprofile 0.9.1

maynard johnson oprofile 0.6

maynard johnson oprofile 0.8.2

maynard johnson oprofile 0.5.1

maynard johnson oprofile 0.6.1

maynard johnson oprofile 0.9.2

maynard johnson oprofile 0.9.3

maynard johnson oprofile 0.9.4

maynard johnson oprofile 0.2

maynard johnson oprofile

maynard johnson oprofile 0.8.1

maynard johnson oprofile 0.7

maynard johnson oprofile 0.9.5

maynard johnson oprofile 0.5.4

maynard johnson oprofile 0.1