Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18284

Опубликовано: 04 июн. 2018
Источник: debian
EPSS Низкий

Описание

The Gentoo app-backup/burp package before 2.1.32 sets the ownership of the PID file directory to the burp account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script sends a SIGKILL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
burpnot-affectedpackage

EPSS

Процентиль: 9%
0.00032
Низкий

Связанные уязвимости

CVSS3: 7.1
nvd
больше 7 лет назад

The Gentoo app-backup/burp package before 2.1.32 sets the ownership of the PID file directory to the burp account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script sends a SIGKILL.

CVSS3: 7.1
github
больше 3 лет назад

The Gentoo app-backup/burp package before 2.1.32 sets the ownership of the PID file directory to the burp account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script sends a SIGKILL.

EPSS

Процентиль: 9%
0.00032
Низкий