7.8 HIGH
- CVSS version: 3.1
- Attack vector (AV): LOCAL
- Attack complexity (AC): LOW
- Privileges required (PR): LOW
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
by @LeSuisse Activity log
- Created suggestion
-
@LeSuisse
ignored
3 packages
- aixlog
- mairix
- tests.fetchgit.describe-tag
- @LeSuisse dismissed
Local user gains root privileges via buffer overflow in rdist, …
Local user gains root privileges via buffer overflow in rdist, via expstr() function.
References
Affected products
- ==4.1.2
- ==3.2.5
- ==4.2
- ==3.1
- ==3.2
- ==3.2.4
- ==4.1.3
- ==4.1.4
- ==4.1.1
- ==4.1.5
- ==4.1
- ==n/a
- ==5.0.1
- ==5.1
- ==5.0
- ==6.1
- ==6.2
- ==6.4
- ==6.3
- ==6.0.1
- ==5.2
- ==5.1.1
- ==6.0
- ==5.3
- ==10.00
- ==5.4
- ==4.1.2
- ==5.1
- ==5.0
- ==4.1.3u1
- ==5.2
- ==4.1.1
- ==5.3
- ==1.1
- ==2.0.5
- ==2.0
- ==2.1.0
- ==4.1.3
Ignored packages (3)
pkgs.aixlog
Header-only C++ logging library
pkgs.mairix
Program for indexing and searching email messages stored in maildir, MH or mbox
-
nixos-unstable 0.24-unstable-2024-09-14
- nixpkgs-unstable 0.24-unstable-2024-09-14
- nixos-unstable-small 0.24-unstable-2024-09-14
-
nixos-25.11 0.24-unstable-2024-09-14
- nixos-25.11-small 0.24-unstable-2024-09-14
- nixpkgs-25.11-darwin 0.24-unstable-2024-09-14
pkgs.tests.fetchgit.describe-tag
None