Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1930

Опубликовано: 14 нояб. 2019
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 10
CVSS3: 9.8

Описание

In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with the privileges of any process which sources DHCP options.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

not-affected

1.5.22-1ubuntu2
precise

not-affected

quantal

not-affected

raring

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 96%
0.28991
Средний

10 Critical

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
около 6 лет назад

In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with the privileges of any process which sources DHCP options.

CVSS3: 9.8
debian
около 6 лет назад

In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /t ...

CVSS3: 9.8
github
больше 3 лет назад

In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with the privileges of any process which sources DHCP options.

EPSS

Процентиль: 96%
0.28991
Средний

10 Critical

CVSS2

9.8 Critical

CVSS3