Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-8641

Опубликовано: 01 авг. 2018
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 7.2
CVSS3: 6.7

Описание

A privilege escalation vulnerability was found in nagios 4.2.x that occurs in daemon-init.in when creating necessary files and insecurely changing the ownership afterwards. It's possible for the local attacker to create symbolic links before the files are to be created and possibly escalating the privileges with the ownership change.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

cosmic

not-affected

devel

not-affected

esm-apps/bionic

not-affected

esm-apps/xenial

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

ignored

end of life
precise/esm

DNE

precise was needs-triage
trusty

not-affected

Показывать по

РелизСтатусПримечание
artful

not-affected

code not present
bionic

not-affected

code not present
cosmic

DNE

devel

DNE

esm-apps/bionic

not-affected

code not present
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [code not present]]
esm-infra/xenial

not-affected

code not present
precise

not-affected

code not present
precise/esm

DNE

precise was not-affected [code not present]
trusty

not-affected

code not present

Показывать по

EPSS

Процентиль: 74%
0.00839
Низкий

7.2 High

CVSS2

6.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.7
redhat
около 9 лет назад

A privilege escalation vulnerability was found in nagios 4.2.x that occurs in daemon-init.in when creating necessary files and insecurely changing the ownership afterwards. It's possible for the local attacker to create symbolic links before the files are to be created and possibly escalating the privileges with the ownership change.

CVSS3: 6.7
nvd
больше 7 лет назад

A privilege escalation vulnerability was found in nagios 4.2.x that occurs in daemon-init.in when creating necessary files and insecurely changing the ownership afterwards. It's possible for the local attacker to create symbolic links before the files are to be created and possibly escalating the privileges with the ownership change.

CVSS3: 6.7
debian
больше 7 лет назад

A privilege escalation vulnerability was found in nagios 4.2.x that oc ...

CVSS3: 7.8
github
больше 3 лет назад

A privilege escalation vulnerability was found in nagios 4.2.x that occurs in daemon-init.in when creating necessary files and insecurely changing the ownership afterwards. It's possible for the local attacker to create symbolic links before the files are to be created and possibly escalating the privileges with the ownership change.

suse-cvrf
больше 7 лет назад

Security update for nagios

EPSS

Процентиль: 74%
0.00839
Низкий

7.2 High

CVSS2

6.7 Medium

CVSS3