CVE-2013-7171

Severity
9.8CRITICAL
EPSS
4.1%
top 11.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 21
Latest updateMay 5

Description

Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp directory which could allow remote attackers to execute arbitrary code with root privileges.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDslackware/slackware_linux14.0, 14.1+1

🔴Vulnerability Details

2
GHSA
GHSA-j9q9-287q-j5c9: Slackware 142022-05-05
CVEList
CVE-2013-7171: Slackware 142019-11-21

📋Vendor Advisories

1
Red Hat
llvm: insecure RPATH in certain binaries2001-07-21

💬Community

1
Bugzilla
CVE-2013-7171 llvm: insecure RPATH in certain binaries2013-12-19