Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2699-8r69-fq67

Опубликовано: 16 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

EPSS

Процентиль: 28%
0.00096
Низкий

7.8 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 6.7
ubuntu
больше 2 лет назад

Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

CVSS3: 6.7
redhat
больше 2 лет назад

Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

CVSS3: 6.7
nvd
больше 2 лет назад

Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

CVSS3: 6.7
debian
больше 2 лет назад

Amanda 3.5.1 allows privilege escalation from the regular user backup ...

suse-cvrf
больше 2 лет назад

Security update for amanda

EPSS

Процентиль: 28%
0.00096
Низкий

7.8 High

CVSS3

Дефекты

CWE-77