Candidate: CVE-2015-8326 PublicDate: 2017-06-07 14:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8326 http://www.openwall.com/lists/oss-security/2015/11/24/6 Description: The IPTables-Parse module before 1.6 for Perl allows local users to write to arbitrary files owned by the current user. Ubuntu-Description: It was discovered that the IPTables-Parse module for Perl allowed local users to write arbitrary files owned by the current user. Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N [5.5 MEDIUM] Patches_libiptables-parse-perl: upstream: https://github.com/mtrmac/IPTables-Parse/commit/b400b976d81140f6971132e94eb7657b5b0a2b87 upstream_libiptables-parse-perl: released (1.6-1) precise_libiptables-parse-perl: ignored (reached end-of-life) precise/esm_libiptables-parse-perl: DNE (precise was needed) trusty_libiptables-parse-perl: released (1.1-1+deb8u1build0.14.04.1) trusty/esm_libiptables-parse-perl: DNE (trusty was released [1.1-1+deb8u1build0.14.04.1]) vivid_libiptables-parse-perl: ignored (reached end-of-life) vivid/stable-phone-overlay_libiptables-parse-perl: DNE vivid/ubuntu-core_libiptables-parse-perl: DNE wily_libiptables-parse-perl: ignored (reached end-of-life) xenial_libiptables-parse-perl: not-affected (1.6-1) yakkety_libiptables-parse-perl: not-affected (1.6-1) zesty_libiptables-parse-perl: not-affected (1.6-1) artful_libiptables-parse-perl: not-affected (1.6-1) bionic_libiptables-parse-perl: not-affected (1.6-1) cosmic_libiptables-parse-perl: not-affected (1.6-1) devel_libiptables-parse-perl: not-affected (1.6-1)