Описание
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "is NOT designed to run setuid-root." Therefore this identifier applies only to those configurations and installations under which pppoe is run setuid root despite the developer's warnings.
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 3.5-4ubuntu1 |
devel | released | 3.5-4ubuntu1 |
edgy | released | 3.5-4ubuntu1 |
feisty | released | 3.5-4ubuntu1 |
upstream | needs-triage |
Показывать по
Ссылки на источники
2.1 Low
CVSS2
Связанные уязвимости
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "is NOT designed to run setuid-root." Therefore this identifier applies *only* to those configurations and installations under which pppoe is run setuid root despite the developer's warnings.
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run set ...
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "is NOT designed to run setuid-root." Therefore this identifier applies *only* to those configurations and installations under which pppoe is run setuid root despite the developer's warnings.
Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику нарушить целостность защищаемой информации
2.1 Low
CVSS2