Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-1946

Опубликовано: 07 июл. 2011
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure of the setgid or setuid function, which allows local users to gain privileges by leveraging access to two unprivileged user accounts, and running many processes under one of these accounts.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hongli_lai:libgnomesu:1.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 15%
0.00047
Низкий

7.2 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 14 лет назад

gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure of the setgid or setuid function, which allows local users to gain privileges by leveraging access to two unprivileged user accounts, and running many processes under one of these accounts.

github
больше 3 лет назад

gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure of the setgid or setuid function, which allows local users to gain privileges by leveraging access to two unprivileged user accounts, and running many processes under one of these accounts.

EPSS

Процентиль: 15%
0.00047
Низкий

7.2 High

CVSS2

Дефекты

CWE-264