Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jmw-7gh4-3h48

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.7

Описание

In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 when a process, such as jexec(8) or killall(1), calls jail_attach(2) to enter a jail, the jailed root can attach to it using ptrace(2) before the current working directory is changed.

In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 when a process, such as jexec(8) or killall(1), calls jail_attach(2) to enter a jail, the jailed root can attach to it using ptrace(2) before the current working directory is changed.

EPSS

Процентиль: 60%
0.0039
Низкий

8.7 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.7
nvd
почти 5 лет назад

In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 when a process, such as jexec(8) or killall(1), calls jail_attach(2) to enter a jail, the jailed root can attach to it using ptrace(2) before the current working directory is changed.

CVSS3: 8.7
debian
почти 5 лет назад

In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12. ...

EPSS

Процентиль: 60%
0.0039
Низкий

8.7 High

CVSS3

Дефекты

CWE-269