Описание
A feature in LXD (LP#1829071), affects the default configuration of Ubuntu Server which allows privileged users in the lxd group to escalate their privilege to root without requiring a sudo password.
Ссылки
- Issue TrackingVendor Advisory
- Third Party Advisory
- Vendor Advisory
- Vendor Advisory
- Issue TrackingVendor Advisory
- Third Party Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 24.04 (исключая)
cpe:2.3:o:canonical:ubuntu_linux:*:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.0004
Низкий
5 Medium
CVSS3
6.4 Medium
CVSS3
Дефекты
CWE-276
Связанные уязвимости
CVSS3: 5
ubuntu
около 2 лет назад
A feature in LXD (LP#1829071), affects the default configuration of Ubuntu Server which allows privileged users in the lxd group to escalate their privilege to root without requiring a sudo password.
CVSS3: 5
github
около 2 лет назад
A feature in LXD (LP#1829071), affects the default configuration of Ubuntu Server which allows privileged users in the lxd group to escalate their privilege to root without requiring a sudo password.
EPSS
Процентиль: 12%
0.0004
Низкий
5 Medium
CVSS3
6.4 Medium
CVSS3
Дефекты
CWE-276