CVE-2010-0746

Directory traversal vulnerability in DeviceKit-disks in DeviceKit, as used in Fedora 11 and 12 and possibly other operating systems, allows local users to gain privileges via .. (dot dot) sequences in the label for a pluggable storage device.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:fedoraproject:fedora:11:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:12:*:*:*:*:*:*:*

History

21 Nov 2024, 01:12

Type Values Removed Values Added
References () http://seclists.org/oss-sec/2010/q2/5 - () http://seclists.org/oss-sec/2010/q2/5 -
References () http://stealth.openwall.net/xSports/devshit.pl - Exploit () http://stealth.openwall.net/xSports/devshit.pl - Exploit
References () http://xorl.wordpress.com/2010/04/06/cve-2010-0746-devicekit-local-privilege-escalation/ - Exploit, Patch () http://xorl.wordpress.com/2010/04/06/cve-2010-0746-devicekit-local-privilege-escalation/ - Exploit, Patch
References () https://bugs.freedesktop.org/show_bug.cgi?id=23235 - () https://bugs.freedesktop.org/show_bug.cgi?id=23235 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=523178 - () https://bugzilla.redhat.com/show_bug.cgi?id=523178 -

Information

Published : 2014-01-13 21:55

Updated : 2024-11-21 01:12


NVD link : CVE-2010-0746

Mitre link : CVE-2010-0746

CVE.ORG link : CVE-2010-0746


JSON object : View

Products Affected

fedoraproject

  • fedora
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')