Описание
base/logging.c in Nagios Core before 4.2.4 allows local users with access to an account in the nagios group to gain root privileges via a symlink attack on the log file. NOTE: this can be leveraged by remote attackers using CVE-2016-9565.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 3.5.1.dfsg-2.1ubuntu5 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [3.5.1-1ubuntu1.1]] |
| esm-infra/xenial | released | 3.5.1.dfsg-2.1ubuntu1.1 |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| trusty | released | 3.5.1-1ubuntu1.1 |
| trusty/esm | DNE | trusty was released [3.5.1-1ubuntu1.1] |
| upstream | needs-triage | |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
EPSS
7.2 High
CVSS2
7.8 High
CVSS3
Связанные уязвимости
base/logging.c in Nagios Core before 4.2.4 allows local users with access to an account in the nagios group to gain root privileges via a symlink attack on the log file. NOTE: this can be leveraged by remote attackers using CVE-2016-9565.
base/logging.c in Nagios Core before 4.2.4 allows local users with access to an account in the nagios group to gain root privileges via a symlink attack on the log file. NOTE: this can be leveraged by remote attackers using CVE-2016-9565.
base/logging.c in Nagios Core before 4.2.4 allows local users with acc ...
base/logging.c in Nagios Core before 4.2.4 allows local users with access to an account in the nagios group to gain root privileges via a symlink attack on the log file. NOTE: this can be leveraged by remote attackers using CVE-2016-9565.
EPSS
7.2 High
CVSS2
7.8 High
CVSS3