Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-31523

Опубликовано: 21 апр. 2021
Источник: nvd
CVSS3: 7.8
CVSS2: 7.2
EPSS Низкий

Описание

The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design of the Mesa 3D Graphics library dependency.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:xscreensaver_project:xscreensaver:5.42\+dfsg1-1:*:*:*:*:*:*:*

EPSS

Процентиль: 13%
0.00042
Низкий

7.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 5 лет назад

The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design of the Mesa 3D Graphics library dependency.

CVSS3: 7.8
debian
почти 5 лет назад

The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_ ...

github
больше 3 лет назад

The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design of the Mesa 3D Graphics library dependency.

EPSS

Процентиль: 13%
0.00042
Низкий

7.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-269