Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18225

Опубликовано: 12 мар. 2018
Источник: debian
EPSS Низкий

Описание

The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, jabberd2-s2s, and jabberd2-sm in /usr/bin owned by the jabber account, which might allow local users to gain privileges by leveraging access to this account and then waiting for root to execute one of these programs.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
jabberd2not-affectedpackage

Примечания

  • https://bugs.gentoo.org/629412

EPSS

Процентиль: 29%
0.00105
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
почти 8 лет назад

The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, jabberd2-s2s, and jabberd2-sm in /usr/bin owned by the jabber account, which might allow local users to gain privileges by leveraging access to this account and then waiting for root to execute one of these programs.

CVSS3: 7.8
github
больше 3 лет назад

The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, jabberd2-s2s, and jabberd2-sm in /usr/bin owned by the jabber account, which might allow local users to gain privileges by leveraging access to this account and then waiting for root to execute one of these programs.

EPSS

Процентиль: 29%
0.00105
Низкий