CVE-2013-0261
high
CVSS v3
8.8
CVSS v2
4.4
VIR risk
8.8
Description
A flaw was found in PackStack. A local user could exploit a symlink attack on a temporary file with a predictable name in the `/tmp` directory. This vulnerability allows the local user to overwrite arbitrary files on the system, potentially leading to system compromise or data corruption.
Predictions
Exploit likelihood
82%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: secalert@redhat.com — http://rhn.redhat.com/errata/RHSA-2013-0595.html
References
CWEs
CWE-59 CWE-264
Verify integrity in audit chain (admin only). AS-IS.