Medium severity4.7NVD Advisory· Published Sep 26, 2017· Updated May 13, 2026
CVE-2015-3248
CVE-2015-3248
Description
openhpi/Makefile.am in OpenHPI before 3.6.0 uses world-writable permissions for /var/lib/openhpi directory, which allows local users, when quotas are not properly setup, to fill the filesystem hosting /var/lib and cause a denial of service (disk consumption).
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- lists.fedoraproject.org/pipermail/package-announce/2015-October/168841.htmlnvdThird Party Advisory
- openhpi.org/Changelogs/3.6.0nvdRelease NotesVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.