Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0476

Опубликовано: 25 окт. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 3.7

Описание

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

РелизСтатусПримечание
devel

released

0.49-5ubuntu1
esm-infra-legacy/trusty

released

0.49-4.1ubuntu1.14.04.1
lucid

released

0.49-3ubuntu0.1
precise

released

0.49-4ubuntu1.1
saucy

released

0.49-4.1ubuntu1.13.10.1
trusty

released

0.49-4.1ubuntu1.14.04.1
trusty/esm

released

0.49-4.1ubuntu1.14.04.1
upstream

needs-triage

Показывать по

3.7 Low

CVSS2

Связанные уязвимости

nvd
больше 11 лет назад

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

debian
больше 11 лет назад

The slapper function in chkrootkit before 0.50 does not properly quote ...

github
больше 3 лет назад

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

3.7 Low

CVSS2