Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-66g6-j5w9-xwv2

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The replay-sorcery program in ReplaySorcery 0.4.0 through 0.5.0, when using the default setuid-root configuration, allows a local attacker to escalate privileges to root by specifying video output paths in privileged locations.

The replay-sorcery program in ReplaySorcery 0.4.0 through 0.5.0, when using the default setuid-root configuration, allows a local attacker to escalate privileges to root by specifying video output paths in privileged locations.

EPSS

Процентиль: 9%
0.00032
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
nvd
почти 5 лет назад

The replay-sorcery program in ReplaySorcery 0.4.0 through 0.5.0, when using the default setuid-root configuration, allows a local attacker to escalate privileges to root by specifying video output paths in privileged locations.

EPSS

Процентиль: 9%
0.00032
Низкий

Дефекты

CWE-269