Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- "data": {
- "vulnerability": {
- "severity": "High",
- "package": {
- "condition": "Package unfixed",
- "name": "rpm-common",
- "source": "rpm",
- "version": "4.14.2.1+dfsg1-1build2",
- "architecture": "amd64"
- },
- "references": [
- "https://bugzilla.redhat.com/show_bug.cgi?id=1964114",
- "https://github.com/rpm-software-management/rpm/pull/1919",
- "https://bugzilla.suse.com/show_bug.cgi?id=1157880",
- "https://github.com/rpm-software-management/rpm/commit/25a435e90844ea98fe5eb7bef22c1aecf3a9c033",
- "https://access.redhat.com/security/cve/CVE-2021-35938",
- "https://rpm.org/wiki/Releases/4.18.0",
- "https://nvd.nist.gov/vuln/detail/CVE-2021-35938",
- "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-35938",
- "https://ubuntu.com/security/CVE-2021-35938"
- ],
- "cve_version": "4.0",
- "assigner": "secalert@redhat.com",
- "published": "2022-08-25",
- "cwe_reference": "CWE-59",
- "title": "CVE-2021-35938 affects rpm-common",
- "type": "PACKAGE",
- "rationale": "A symbolic link issue was found in rpm. It occurs when rpm sets the desired permissions and credentials after installing a file. A local unprivileged user could use this flaw to exchange the original file with a symbolic link to a security-critical file and escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.",
- "cve": "CVE-2021-35938",
- "cvss": {
- "cvss3": {
- "base_score": "7.800000",
- "vector": {
- "user_interaction": "none",
- "integrity_impact": "high",
- "scope": "unchanged",
- "confidentiality_impact": "high",
- "availability": "high",
- "attack_vector": "local",
- "access_complexity": "low",
- "privileges_required": "low"
- }
- }
- },
- "updated": "2022-08-31",
- "status": "Active"
- }
- },
- "rule": {
- "firedtimes": 458,
- "mail": false,
- "level": 10,
- "pci_dss": [
- "11.2.1",
- "11.2.3"
- ],
- "tsc": [
- "CC7.1",
- "CC7.2"
- ],
- "description": "CVE-2021-35938 affects rpm-common",
- "groups": [
- "vulnerability-detector"
- ],
- "id": "23505",
- "gdpr": [
- "IV_35.7.d"
- ]
- },
- "location": "vulnerability-detector",
- "decoder": {
- "name": "json"
- },
- "id": "1664242144.7029312",
- "timestamp": "2022-09-27T04:29:04.491+0300"
- },
- "fields": {
- "data.vulnerability.published": [
- "2022-08-25T00:00:00.000Z"
- ],
- "data.vulnerability.updated": [
- "2022-08-31T00:00:00.000Z"
- ],
- "timestamp": [
- "2022-09-27T01:29:04.491Z"
- ]
- },
- "highlight": {
- "agent.id": [
- "@opensearch-dashboards-highlighted-field@010@/opensearch-dashboards-highlighted-field@"
- ],
- "manager.name": [
- "@opensearch-dashboards-highlighted-field@localhost.localdomain@/opensearch-dashboards-highlighted-field@"
- ],
- "rule.groups": [
- "@opensearch-dashboards-highlighted-field@vulnerability-detector@/opensearch-dashboards-highlighted-field@"
- ]
- },
- "sort": [
- 1664242144491
- ]
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement