Логотип exploitDog
bind:CVE-2008-0008
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-0008

Количество 4

Количество 4

ubuntu логотип

CVE-2008-0008

почти 18 лет назад

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2008-0008

почти 18 лет назад

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.

CVSS2: 7.2
EPSS: Низкий
debian логотип

CVE-2008-0008

почти 18 лет назад

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 bui ...

CVSS2: 7.2
EPSS: Низкий
github логотип

GHSA-8542-rfhf-wf9j

больше 3 лет назад

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2008-0008

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.

CVSS2: 7.2
0%
Низкий
почти 18 лет назад
nvd логотип
CVE-2008-0008

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.

CVSS2: 7.2
0%
Низкий
почти 18 лет назад
debian логотип
CVE-2008-0008

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 bui ...

CVSS2: 7.2
0%
Низкий
почти 18 лет назад
github логотип
GHSA-8542-rfhf-wf9j

The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу