Show plain JSON{"cve": {"data_type": "CVE", "references": {"reference_data": [{"url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=606544", "name": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=606544", "tags": [], "refsource": "MISC"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/22", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/06/6", "name": "[oss-security] 20110306 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/16", "name": "[oss-security] 20110304 CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/10/7", "name": "[oss-security] 20110311 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/06/5", "name": "[oss-security] 20110306 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/05/4", "name": "[oss-security] 20110305 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/10/6", "name": "[oss-security] 20110311 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/06/3", "name": "[oss-security] 20110306 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/26", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/07/5", "name": "[oss-security] 20110307 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/27", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/30", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/23/11", "name": "[oss-security] 20110323 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/06/4", "name": "[oss-security] 20110306 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/11/3", "name": "[oss-security] 20110311 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/25", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/31", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/05/8", "name": "[oss-security] 20110306 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/18", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/33", "name": "[oss-security] 20110305 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/28", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/24", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/07/6", "name": "[oss-security] 20110307 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/08/5", "name": "[oss-security] 20110308 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/14/26", "name": "[oss-security] 20110314 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/05/6", "name": "[oss-security] 20110305 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/10/3", "name": "[oss-security] 20110310 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/10/2", "name": "[oss-security] 20110310 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/32", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/17", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/29", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/04/19", "name": "[oss-security] 20110304 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/07/11", "name": "[oss-security] 20110307 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://openwall.com/lists/oss-security/2011/03/11/5", "name": "[oss-security] 20110311 Re: CVE Request -- logrotate -- nine issues", "tags": [], "refsource": "MLIST"}, {"url": "http://www.securityfocus.com/bid/47167", "name": "47167", "tags": [], "refsource": "BID"}]}, "data_format": "MITRE", "description": {"description_data": [{"lang": "en", "value": "The default configuration of logrotate on Debian GNU/Linux uses root privileges to process files in directories that permit non-root write access, which allows local users to conduct symlink and hard link attacks by leveraging logrotate's lack of support for untrusted directories, as demonstrated by /var/log/postgresql/."}]}, "problemtype": {"problemtype_data": [{"description": [{"lang": "en", "value": "CWE-264"}]}]}, "data_version": "4.0", "CVE_data_meta": {"ID": "CVE-2011-1548", "ASSIGNER": "cve@mitre.org"}}, "impact": {"baseMetricV2": {"cvssV2": {"version": "2.0", "baseScore": 6.3, "accessVector": "LOCAL", "vectorString": "AV:L/AC:M/Au:N/C:N/I:C/A:C", "authentication": "NONE", "integrityImpact": "COMPLETE", "accessComplexity": "MEDIUM", "availabilityImpact": "COMPLETE", "confidentialityImpact": "NONE"}, "severity": "MEDIUM", "impactScore": 9.2, "obtainAllPrivilege": false, "exploitabilityScore": 3.4, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}}, "publishedDate": "2011-03-30T22:55Z", "configurations": {"nodes": [{"children": [{"children": [], "operator": "OR", "cpe_match": [{"cpe23Uri": "cpe:2.3:a:gentoo:logrotate:*:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true}]}, {"children": [], "operator": "OR", "cpe_match": [{"cpe23Uri": "cpe:2.3:o:debian:linux:*:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": false}]}], "operator": "AND", "cpe_match": []}], "CVE_data_version": "4.0"}, "lastModifiedDate": "2011-04-21T02:33Z"}