Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x9rv-39rr-f53c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in GNU Hurd before 0.9 20210404-9. libports accepts fake notification messages from any client on any port, which can lead to port use-after-free. This can be exploited for local privilege escalation to get full root access.

An issue was discovered in GNU Hurd before 0.9 20210404-9. libports accepts fake notification messages from any client on any port, which can lead to port use-after-free. This can be exploited for local privilege escalation to get full root access.

EPSS

Процентиль: 13%
0.00044
Низкий

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

An issue was discovered in GNU Hurd before 0.9 20210404-9. libports accepts fake notification messages from any client on any port, which can lead to port use-after-free. This can be exploited for local privilege escalation to get full root access.

CVSS3: 7.8
debian
больше 4 лет назад

An issue was discovered in GNU Hurd before 0.9 20210404-9. libports ac ...

EPSS

Процентиль: 13%
0.00044
Низкий

Дефекты

CWE-416