CVE-2025-0781

An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permission to modify at the operating-system level.
Configurations

No configuration.

History

29 Jan 2025, 22:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/01/msg00029.html -

29 Jan 2025, 19:15

Type Values Removed Values Added
Summary
  • (es) Un atacante puede eludir la sandbox de Nasal scripts y escribir arbitrariamente en cualquier ruta de archivo que el usuario tenga permiso para modificar en el nivel operativo sistema.
References
  • () https://lists.debian.org/debian-lts-announce/2025/01/msg00028.html -

28 Jan 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-28 17:15

Updated : 2025-01-29 22:15


NVD link : CVE-2025-0781

Mitre link : CVE-2025-0781

CVE.ORG link : CVE-2025-0781


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization