Lucene search

K

Doas Security Vulnerabilities

cve
cve

CVE-2019-15901

An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. A setusercontext(3) call with flags to change the UID, primary GID, and secondary GIDs was replaced (on certain platforms: Linux and possibly NetBSD) with a single setuid(2) call. This resulted in neither.....

8.8CVSS

8.5AI Score

0.002EPSS

2019-10-18 04:15 PM
123
cve
cve

CVE-2019-15900

An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. On platforms without strtonum(3), sscanf was used without checking for error cases. Instead, the uninitialized variable errstr was checked and in some cases returned success even if sscanf failed. The...

9.8CVSS

9.6AI Score

0.002EPSS

2019-10-18 04:15 PM
127