CVE-2013-7458
Find out more about CVE-2013-7458 from the MITRE CVE dictionary dictionary and NIST NVD.
Statement
Red Hat Product Security has rated this issue as having security impact of Low.
Further, home directories are not world readable on RHEL distributions (by default). This issue is not currently planned to be addressed in future
updates. For additional information, refer to the Issue Severity
Classification: https://access.redhat.com/security/updates/classification/.
CVSS v2 metrics
NOTE: The following CVSS v2 metrics and score provided are preliminary and subject to review.
| Base Score | 1.2 |
|---|---|
| Base Metrics | AV:L/AC:H/Au:N/C:P/I:N/A:N |
| Access Vector | Local |
| Access Complexity | High |
| Authentication | None |
| Confidentiality Impact | Partial |
| Integrity Impact | None |
| Availability Impact | None |
CVSS v3 metrics
NOTE: The following CVSS v3 metrics and score provided are preliminary and subject to review.
| CVSS3 Base Score | 2.9 |
|---|---|
| CVSS3 Base Metrics | CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N |
| Attack Vector | Local |
| Attack Complexity | High |
| Privileges Required | None |
| User Interaction | None |
| Scope | Unchanged |
| Confidentiality | Low |
| Integrity Impact | None |
| Availability Impact | None |
Find out more about Red Hat support for the Common Vulnerability Scoring System (CVSS).
Affected Packages State
| Platform | Package | State |
|---|---|---|
| Red Hat OpenStack Platform Operational Tools 9 | redis | Will not fix |
| Red Hat OpenStack Platform 9.0 | redis | Will not fix |
| Red Hat OpenStack Platform 8.0 (Liberty) | redis | Will not fix |
| Red Hat OpenStack Platform 10 | redis | Will not fix |
| Red Hat Enterprise Linux OpenStack Platform 8.0 Operational Tools for RHEL 7 | redis | Will not fix |
| Red Hat Enterprise Linux OpenStack Platform 7.0 Operational Tools for RHEL 7 | redis | Will not fix |
| Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7 | redis | Will not fix |
| Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7 | redis | Will not fix |
