Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-45417

Опубликовано: 20 янв. 2022
Источник: debian

Описание

AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
aidefixed0.17.4-1package

Примечания

  • https://github.com/aide/aide/commit/175d1f2626f4500b4fc5ecb7167bba9956b174bc (v0.17.4)

  • https://www.openwall.com/lists/oss-security/2022/01/20/3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 4 лет назад

AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.

CVSS3: 7.5
redhat
около 4 лет назад

AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.

CVSS3: 7.8
nvd
около 4 лет назад

AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.

suse-cvrf
почти 4 года назад

Security update for aide

suse-cvrf
около 4 лет назад

Security update for aide