Vulnerability Description
sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sos Project | Sos | >= 3.0, <= 3.8 |
| Canonical | Ubuntu Linux | 14.04 |
| Redhat | Enterprise Linux Desktop | 6.0 |
| Redhat | Enterprise Linux Server | 6.0 |
| Redhat | Enterprise Linux Server Aus | 7.2 |
| Redhat | Enterprise Linux Server Eus | 6.7 |
| Redhat | Enterprise Linux Server Tus | 7.2 |
| Redhat | Enterprise Linux Workstation | 6.0 |
Related Weaknesses (CWE)
References
- http://rhn.redhat.com/errata/RHSA-2016-0152.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0188.htmlThird Party Advisory
- http://www.securityfocus.com/bid/83162Third Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/USN-2845-1Issue TrackingThird Party Advisory
- https://access.redhat.com/errata/RHSA-2016:0152Issue TrackingThird Party Advisory
- https://access.redhat.com/errata/RHSA-2016:0188Issue TrackingThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1282542Issue TrackingThird Party Advisory
- https://github.com/sosreport/sos/issues/696Issue TrackingPatchThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0152.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0188.htmlThird Party Advisory
- http://www.securityfocus.com/bid/83162Third Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/USN-2845-1Issue TrackingThird Party Advisory
- https://access.redhat.com/errata/RHSA-2016:0152Issue TrackingThird Party Advisory
- https://access.redhat.com/errata/RHSA-2016:0188Issue TrackingThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1282542Issue TrackingThird Party Advisory
FAQ
What is CVE-2015-7529?
CVE-2015-7529 is a vulnerability with a CVSS score of 7.8 (HIGH). sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sos...
How severe is CVE-2015-7529?
CVE-2015-7529 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-7529?
Check the references section above for vendor advisories and patch information. Affected products include: Sos Project Sos, Canonical Ubuntu Linux, Redhat Enterprise Linux Desktop, Redhat Enterprise Linux Server, Redhat Enterprise Linux Server Aus.