메뉴 건너뛰기

GREATUSER

cve

CVE-2017-13649

관리자 2017.08.27 07:00 조회 수 : 204

UnrealIRCd 4.0.13 and earlier creates a PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to this non-root account for PID file modification before a root script executes a "kill `cat /pathname`" command. NOTE: the vendor indicates that there is no common or recommended scenario in which a root script would execute this kill command.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-13649
번호 제목 글쓴이 날짜 조회 수
242 CVE-2017-0078 관리자 2017.03.18 162
241 CVE-2017-0073 관리자 2017.03.18 162
240 CVE-2017-0014 관리자 2017.03.18 162
239 CVE-2017-0009 관리자 2017.03.18 162
238 CVE-2016-6996 관리자 2016.10.14 162
237 CVE-2016-3215 관리자 2016.06.17 162
236 CVE-2017-16648 관리자 2017.11.09 161
235 CVE-2017-2917 관리자 2017.11.09 161
234 CVE-2017-14098 관리자 2017.09.04 161
233 CVE-2015-1324 관리자 2017.08.27 161
232 CVE-2017-13145 (imagemagick) 관리자 2017.08.27 161
231 CVE-2017-0149 관리자 2017.03.18 161
230 CVE-2017-0146 관리자 2017.03.18 161
229 CVE-2017-0124 관리자 2017.03.18 161
228 CVE-2017-0067 관리자 2017.03.18 161
위로