Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-16933

Опубликовано: 24 нояб. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.9
CVSS3: 7

Описание

etc/initsystem/prepare-dirs in Icinga 2.x through 2.8.1 has a chown call for a filename in a user-writable directory, which allows local users to gain privileges by leveraging access to the $ICINGA2_USER account for creation of a link.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

2.10.2-1
disco

not-affected

2.10.2-1
eoan

not-affected

2.10.2-1
esm-apps/bionic

needed

esm-apps/focal

not-affected

2.10.2-1
esm-apps/jammy

not-affected

2.10.2-1
esm-apps/noble

not-affected

2.10.2-1

Показывать по

EPSS

Процентиль: 8%
0.0003
Низкий

6.9 Medium

CVSS2

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
nvd
около 8 лет назад

etc/initsystem/prepare-dirs in Icinga 2.x through 2.8.1 has a chown call for a filename in a user-writable directory, which allows local users to gain privileges by leveraging access to the $ICINGA2_USER account for creation of a link.

CVSS3: 7
debian
около 8 лет назад

etc/initsystem/prepare-dirs in Icinga 2.x through 2.8.1 has a chown ca ...

CVSS3: 7
github
больше 3 лет назад

etc/initsystem/prepare-dirs in Icinga 2.x through 2.8.1 has a chown call for a filename in a user-writable directory, which allows local users to gain privileges by leveraging access to the $ICINGA2_USER account for creation of a link.

EPSS

Процентиль: 8%
0.0003
Низкий

6.9 Medium

CVSS2

7 High

CVSS3