The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not …
The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping privileges but if the call fails the daemon would continue to run with root privileges which can allow possible privilege escalation.
References
- https://security-tracker.debian.org/tracker/CVE-2011-2910 x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2910 x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2910 x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2910 x_transferred x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2910 x_transferred x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2910 x_transferred x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2910 x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2910 x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2910 x_refsource_MISC
- https://security-tracker.debian.org/tracker/CVE-2011-2910 x_transferred x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-2910 x_transferred x_refsource_MISC
- https://access.redhat.com/security/cve/cve-2011-2910 x_transferred x_refsource_MISC
Affected products
ax25-tools
- ==before 0.0.8-13
Matching in nixpkgs
pkgs.ax25-tools
Non-GUI tools used to configure an AX.25 enabled computer
-
nixos-unstable 0.0.10-rc5
- nixpkgs-unstable 0.0.10-rc5
- nixos-unstable-small 0.0.10-rc5
-
nixos-25.11 0.0.10-rc5
- nixos-25.11-small 0.0.10-rc5
- nixpkgs-25.11-darwin 0.0.10-rc5
Package maintainers
-
@sarcasticadmin Robert James Hernandez <rob@sarcasticadmin.com>