CVE-2011-2910
CVE-2011-2910
The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping privileges but if the call fails the daemon would continue to run with root privileges which can allow possible privilege escalation.
Produtos afetados
ax25-tools · ax25-toolsQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →