CVE-2011-1136
בינונית 4.7
תיאור (מקור, אנגלית)
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file.
מדדים
- CVSS 3.1
-
4.7 (MEDIUM)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-17/9/2026
- CWE
- CWE-59
מוצרים מושפעים
tesseract-ocr: tesseract ocr; debian: debian linux
קישורים
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612032 ExploitMailing ListPatchThird Party Advisory
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612032 ExploitMailing ListPatchThird Party Advisory
- https://bugs.launchpad.net/ubuntu/+source/tesseract/+bug/607297 ExploitIssue TrackingThird Party Advisory
- https://bugs.launchpad.net/ubuntu/+source/tesseract/+bug/607297 ExploitIssue TrackingThird Party Advisory
- https://security-tracker.debian.org/tracker/CVE-2011-1136 Third Party Advisory
- https://security-tracker.debian.org/tracker/CVE-2011-1136 Third Party Advisory