2.1
CVSSv2

CVE-2013-1764

Published: 16/04/2014 Updated: 17/04/2014
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Zypper (aka zypp) backend in PackageKit prior to 0.8.8 allows local users to downgrade packages via the "install updates" method.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

packagekit project packagekit

packagekit project packagekit 0.8.6

packagekit project packagekit 0.8.5

packagekit project packagekit 0.8.4

packagekit project packagekit 0.8.3

packagekit project packagekit 0.8.1

packagekit project packagekit 0.8.2

Vendor Advisories

The Zypper (aka zypp) backend in PackageKit before 088 allows local users to downgrade packages via the "install updates" method ...