Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0476

Опубликовано: 25 окт. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.7

Описание

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

РелизСтатусПримечание
devel

released

0.49-5ubuntu1
esm-infra-legacy/trusty

released

0.49-4.1ubuntu1.14.04.1
lucid

released

0.49-3ubuntu0.1
precise

released

0.49-4ubuntu1.1
saucy

released

0.49-4.1ubuntu1.13.10.1
trusty

released

0.49-4.1ubuntu1.14.04.1
trusty/esm

released

0.49-4.1ubuntu1.14.04.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 89%
0.03828
Низкий

3.7 Low

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

debian
почти 12 лет назад

The slapper function in chkrootkit before 0.50 does not properly quote ...

github
больше 4 лет назад

The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

EPSS

Процентиль: 89%
0.03828
Низкий

3.7 Low

CVSS2