Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8jpc-3pph-f5r4

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.

GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.

EPSS

Процентиль: 21%
0.00068
Низкий

Связанные уязвимости

nvd
почти 25 лет назад

GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.

EPSS

Процентиль: 21%
0.00068
Низкий