Oval Definition:oval:com.ubuntu.precise:def:20153248000
Revision Date:2015-10-09Version:1
Title:CVE-2015-3248 on Ubuntu 12.04 LTS (precise) - low.
Description:openhpi ships with the /var/lib/openhpi/ directory set world readable and writeable. If this directory is used for storing the OPENHPI_UID_MAP or other openhpi data for example an attacker would be able to view, modify and delete it. Even without such usage an attacker could use it to fill up the storage hosting the /var/lib/ directory if quotas are not properly set.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-3248
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The vulnerability of the 'openhpi' package in precise is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK