CVE-2013-1976
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via…
Does this matter?
Lower severity and a low EPSS score (0.37%). Track it; it rarely justifies an emergency change on its own.
Description
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via a symlink attack on (a) tomcat5-initd.log, (b) tomcat6-initd.log, (c) catalina.out, or (d) tomcat7-initd.log.
- CVSS 2.0
- 6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 0.37% probability · 31th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-59
- Affected
- redhat/jboss enterprise web server · redhat/enterprise linux
- Source
- secalert@redhat.com
References
- http://lists.opensuse.org/opensuse-updates/2013-08/msg00013.html
- http://rhn.redhat.com/errata/RHSA-2013-0869.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0870.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0871.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0872.htmlVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=927622Vendor Advisory
- http://lists.opensuse.org/opensuse-updates/2013-08/msg00013.html
- http://rhn.redhat.com/errata/RHSA-2013-0869.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0870.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0871.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0872.htmlVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=927622Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.