Beveiligingsadvies

CVE-2016-20015

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-09-20 17:01:47
Laatst bijgewerkt 2025-05-29 13:24:16
Toegewezen door mitre
CVSS-score 7.5
Status PUBLISHED

Beschrijving

In the ebuild package through smokeping-2.7.3-r1 for SmokePing on Gentoo, the initscript allows the smokeping user to gain ownership of any file, allowing for the smokeping user to gain root privileges. There is a race condition involving /var/lib/smokeping and chown.