Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-36657

Опубликовано: 26 янв. 2023
Источник: debian
EPSS Низкий

Описание

uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges by creating a hard link within the /var/spool/uptimed directory, because there is an unsafe chown -R call.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
uptimednot-affectedpackage

EPSS

Процентиль: 12%
0.00039
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 3 лет назад

uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges by creating a hard link within the /var/spool/uptimed directory, because there is an unsafe chown -R call.

CVSS3: 7.8
nvd
около 3 лет назад

uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges by creating a hard link within the /var/spool/uptimed directory, because there is an unsafe chown -R call.

CVSS3: 7.8
github
около 3 лет назад

uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges by creating a hard link within the /var/spool/uptimed directory, because there is an unsafe chown -R call.

EPSS

Процентиль: 12%
0.00039
Низкий