Vulnerability Details CVE-2011-0022
The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions for the /var/run/dirsrv directory, which allows local users to cause a denial of service (daemon outage or arbitrary process termination) by replacing PID files contained in this directory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.0%
CVSS Severity
CVSS v2 Score 4.7
Products affected by CVE-2011-0022
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.1
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.2
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.3
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.5
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.6
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.6.1
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.7
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.7.5
-
cpe:2.3:a:fedoraproject:389_directory_server:1.2.8
-
cpe:2.3:a:redhat:directory_server:8.2
-
cpe:2.3:a:redhat:directory_server:8.2.3