Lucene search

K
cvelistRedhatCVELIST:CVE-2012-4442
HistoryOct 05, 2012 - 9:00 p.m.

CVE-2012-4442

2012-10-0521:00:00
redhat
www.cve.org
1
cve-2012-4442
monkey http daemon
privilege escalation
file-permission
race condition

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

5.1%

Monkey HTTP Daemon 0.9.3 retains the supplementary group IDs of the root account during operations with a non-root effective UID, which might allow local users to bypass intended file-read restrictions by leveraging a race condition in a file-permission check.

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVELIST:CVE-2012-4442