CVE Vulnerabilities

CVE-2013-7135

Published: Jan 28, 2014 | Modified: Feb 21, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
3.6 LOW
AV:L/AC:L/Au:N/C:P/I:P/A:N
RedHat/V3
Ubuntu
MEDIUM

The Proc::Daemon module 0.14 for Perl uses world-writable permissions for a file that stores a process ID, which allows local users to have an unspecified impact by modifying this file.

Affected Software

Name Vendor Start Version End Version
Proc::adaemon-run_perl Detlef_pilzecker 0.14 (including) 0.14 (including)
Libproc-daemon-perl Ubuntu lucid *
Libproc-daemon-perl Ubuntu precise *
Libproc-daemon-perl Ubuntu quantal *
Libproc-daemon-perl Ubuntu raring *
Libproc-daemon-perl Ubuntu saucy *
Libproc-daemon-perl Ubuntu upstream *

References