Lucene search

K
debianDebianDEBIAN:B87A0E3D5D1B4BDA15C92C903F63DD51:559F0
HistoryJun 04, 2014 - 10:41 a.m.

chkrootkit LTS security update

2014-06-0410:41:43
lists.debian.org
19

CVSS2

3.7

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

EPSS

0.001

Percentile

38.8%

Package : chkrootkit
Version : 0.49-4+deb6u1
CVE ID : CVE-2014-0476

Thomas Stangner discovered a vulnerability in chkrootkit, a rootkit
detector, which may allow local attackers to gain root access when /tmp
is mounted without the noexec option.
Attachment:
signature.asc
Description: Digital signature

CVSS2

3.7

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

EPSS

0.001

Percentile

38.8%