메뉴 건너뛰기

GREATUSER

cve

CVE-2017-13649

관리자 2017.08.27 07:00 조회 수 : 204

UnrealIRCd 4.0.13 and earlier creates a PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to this non-root account for PID file modification before a root script executes a "kill `cat /pathname`" command. NOTE: the vendor indicates that there is no common or recommended scenario in which a root script would execute this kill command.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-13649
번호 제목 글쓴이 날짜 조회 수
197 CVE-2017-14025 관리자 2017.11.09 156
196 CVE-2017-16570 관리자 2017.11.09 156
195 CVE-2017-9805 관리자 2017.09.16 156
194 CVE-2017-13671 관리자 2017.08.27 156
193 CVE-2017-7410 관리자 2017.04.04 156
192 CVE-2017-7926 관리자 2017.08.27 155
191 CVE-2017-0090 관리자 2017.03.18 155
190 CVE-2017-0094 관리자 2017.03.18 155
189 CVE-2017-6576 (mail-masta) 관리자 2017.03.10 155
188 CVE-2017-6575 관리자 2017.03.10 155
187 CVE-2018-1000002 관리자 2018.01.25 154
186 CVE-2016-3231 관리자 2016.06.17 154
185 CVE-2017-16635 관리자 2017.11.09 153
184 CVE-2014-7857 관리자 2017.08.27 153
183 CVE-2017-13141 (imagemagick) 관리자 2017.08.27 153
위로