Описание
Maped in LuxMan 0.41 uses the user-provided search path to find and execute the gzip program, which allows local users to modify /dev/mem and gain privileges via a modified PATH environment variable that points to a Trojan horse gzip program.
Ссылки
- PatchVendor Advisory
- ExploitPatchVendor Advisory
- PatchVendor Advisory
- ExploitPatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:frank_mcingvale:luxman:0.41:*:*:*:*:*:*:*
EPSS
Процентиль: 20%
0.00062
Низкий
7.2 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
debian
почти 23 года назад
Maped in LuxMan 0.41 uses the user-provided search path to find and ex ...
github
больше 3 лет назад
Maped in LuxMan 0.41 uses the user-provided search path to find and execute the gzip program, which allows local users to modify /dev/mem and gain privileges via a modified PATH environment variable that points to a Trojan horse gzip program.
EPSS
Процентиль: 20%
0.00062
Низкий
7.2 High
CVSS2
Дефекты
NVD-CWE-Other