Логотип exploitDog
bind:CVE-2013-4559
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-4559

Количество 4

Количество 4

ubuntu логотип

CVE-2013-4559

около 12 лет назад

lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attackers to gain privileges, as demonstrated by multiple calls to the clone function that cause setuid to fail when the user process limit is reached.

CVSS2: 7.6
EPSS: Средний
nvd логотип

CVE-2013-4559

около 12 лет назад

lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attackers to gain privileges, as demonstrated by multiple calls to the clone function that cause setuid to fail when the user process limit is reached.

CVSS2: 7.6
EPSS: Средний
debian логотип

CVE-2013-4559

около 12 лет назад

lighttpd before 1.4.33 does not check the return value of the (1) setu ...

CVSS2: 7.6
EPSS: Средний
github логотип

GHSA-pfcc-94ff-p2cv

больше 3 лет назад

lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attackers to gain privileges, as demonstrated by multiple calls to the clone function that cause setuid to fail when the user process limit is reached.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-4559

lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attackers to gain privileges, as demonstrated by multiple calls to the clone function that cause setuid to fail when the user process limit is reached.

CVSS2: 7.6
14%
Средний
около 12 лет назад
nvd логотип
CVE-2013-4559

lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attackers to gain privileges, as demonstrated by multiple calls to the clone function that cause setuid to fail when the user process limit is reached.

CVSS2: 7.6
14%
Средний
около 12 лет назад
debian логотип
CVE-2013-4559

lighttpd before 1.4.33 does not check the return value of the (1) setu ...

CVSS2: 7.6
14%
Средний
около 12 лет назад
github логотип
GHSA-pfcc-94ff-p2cv

lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attackers to gain privileges, as demonstrated by multiple calls to the clone function that cause setuid to fail when the user process limit is reached.

14%
Средний
больше 3 лет назад

Уязвимостей на страницу