Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-2781

Опубликовано: 28 фев. 2016
Источник: redhat
CVSS3: 8.6
CVSS2: 6.2
EPSS Низкий

Описание

chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

It was found that chroot was vulnerable to TIOCSTI ioctl attacks, allowing the executed program to push characters to its TTY's input buffer. While being executed as a non-privileged user, a specially crafted program could force its parent TTY to enter commands, interpreted by the shell when chroot exits.

Отчет

This issue affects the versions of coreutils as shipped with Red Hat Enterprise Linux 6 and 7. Red Hat Product Security has rated this issue as having Moderate security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5coreutilsNot affected
Red Hat Enterprise Linux 6coreutilsWill not fix
Red Hat Enterprise Linux 7coreutilsWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-270
https://bugzilla.redhat.com/show_bug.cgi?id=1312863coreutils: Non-privileged session can escape to the parent session in chroot

EPSS

Процентиль: 26%
0.00086
Низкий

8.6 High

CVSS3

6.2 Medium

CVSS2

Связанные уязвимости

CVSS3: 4.6
ubuntu
больше 8 лет назад

chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

CVSS3: 4.6
nvd
больше 8 лет назад

chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

CVSS3: 4.6
msrc
9 дней назад

Описание отсутствует

CVSS3: 4.6
debian
больше 8 лет назад

chroot in GNU coreutils, when used with --userspec, allows local users ...

CVSS3: 6.5
github
около 3 лет назад

chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

EPSS

Процентиль: 26%
0.00086
Низкий

8.6 High

CVSS3

6.2 Medium

CVSS2