Total vulnerabilities in the database
A flaw was found in katello-debug before 3.4.0 where certain scripts and log files used insecure temporary files. A local user could exploit this flaw to conduct a symbolic-link attack, allowing them to overwrite the contents of arbitrary files.
Software | From | Fixed in |
---|---|---|
theforeman / katello | - | 3.4.0 |
redhat / satellite | 6.3 | 6.3.x |
redhat / satellite_capsule | 6.3 | 6.3.x |