7.2
CVSSv2

CVE-2013-7135

Published: 28/01/2014 Updated: 21/02/2014
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Proc::Daemon module 0.14 for Perl uses world-writable permissions for a file that stores a process ID, which allows local users to have an unspecified impact by modifying this file.

Vulnerable Product Search on Vulmon Subscribe to Product

detlef pilzecker proc\\ \\

Vendor Advisories

Debian Bug report logs - #732283 libproc-daemon-perl: CVE-2013-7135: Writes pidfile with mode 666 Package: libproc-daemon-perl; Maintainer for libproc-daemon-perl is Debian Perl Group <pkg-perl-maintainers@listsaliothdebianorg>; Source for libproc-daemon-perl is src:libproc-daemon-perl (PTS, buildd, popcon) Reported by: c ...
The Proc::Daemon module 014 for Perl uses world-writable permissions for a file that stores a process ID, which allows local users to have an unspecified impact by modifying this file ...