Lucene search

K
osvGoogleOSV:BIT-2020-7221
HistoryNov 06, 2023 - 7:32 a.m.

BIT-2020-7221

2023-11-0607:32:19
Google
osv.dev
22
mariadb
privilege escalation
mysql_install_db
symlink attack
chown
chmod
auth_pam_tool_dir
oraclemysql

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

30.0%

mysql_install_db in MariaDB 10.4.7 through 10.4.11 allows privilege escalation from the mysql user account to root because chown and chmod are performed unsafely, as demonstrated by a symlink attack on a chmod 04755 of auth_pam_tool_dir/auth_pam_tool. NOTE: this does not affect the Oracle MySQL product, which implements mysql_install_db differently.

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

30.0%