Логотип exploitDog
bind:"CVE-2017-12424"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-12424"

Количество 8

Количество 8

ubuntu логотип

CVE-2017-12424

больше 8 лет назад

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2017-12424

почти 9 лет назад

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2017-12424

больше 8 лет назад

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-12424

больше 8 лет назад

In shadow before 4.5, the newusers tool could be made to manipulate in ...

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:2979-1

около 8 лет назад

Security update for shadow

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2947-1

больше 8 лет назад

Security update for shadow

EPSS: Низкий
github логотип

GHSA-mmpg-c26w-2pfg

больше 3 лет назад

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2021-05844

больше 11 лет назад

Уязвимость инструмента newusers утилиты для управления учетными записями shadow, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-12424

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 9.8
1%
Низкий
больше 8 лет назад
redhat логотип
CVE-2017-12424

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 4.5
1%
Низкий
почти 9 лет назад
nvd логотип
CVE-2017-12424

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 9.8
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-12424

In shadow before 4.5, the newusers tool could be made to manipulate in ...

CVSS3: 9.8
1%
Низкий
больше 8 лет назад
suse-cvrf логотип
openSUSE-SU-2017:2979-1

Security update for shadow

1%
Низкий
около 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2947-1

Security update for shadow

1%
Низкий
больше 8 лет назад
github логотип
GHSA-mmpg-c26w-2pfg

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-05844

Уязвимость инструмента newusers утилиты для управления учетными записями shadow, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 9.8
1%
Низкий
больше 11 лет назад

Уязвимостей на страницу