VDB
CVE-2010-0412
CVE-2010-0412
PUBLISHED
CVSS 7.5 HIGH
stap-server in SystemTap 1.1 does not properly restrict the value of the -B (aka BUILD) option, which allows attackers to have an unspecified impact via vectors associated with executing the make program, a different vulnerability than CVE-2009-4273.
EPSS 0.49% · 65.9th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
0.49%
65.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| systemtap | systemtap | 1.1 |
| n/a | n/a | n/a |
Timeline
- Feb 25, 2010 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 3, 2023 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- FEDORA-2010-1373 vendor-advisory
- systemtap-stapserver-unspecified(56611) vdb
- [scm-commits] 20100215 rpms/systemtap/devel systemtap-1.1-tighten-server-params.patch, NONE, 1.1 systemtap.spec, 1.59, 1.60 mailing-list
- FEDORA-2010-1720 vendor-advisory
- 38316 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2010-0412 advisory
- https://access.redhat.com/security/cve/CVE-2010-0412 url
- https://bugzilla.redhat.com/show_bug.cgi?id=550172 url