Lucene search

K

Policycoreutils Security Vulnerabilities

cve
cve

CVE-2018-1063

Context relabeling of filesystems is vulnerable to symbolic link attack, allowing a local, unprivileged malicious entity to change the SELinux context of an arbitrary file to a context with few restrictions. This only happens when the relabeling process is done, usually when taking SELinux state...

4.4CVSS

4.4AI Score

0.0004EPSS

2018-03-02 03:29 PM
177
cve
cve

CVE-2014-3215

seunshare in policycoreutils 2.2.5 is owned by root with 4755 permissions, and executes programs in a way that changes the relationship between the setuid system call and the getresuid saved set-user-ID value, which makes it easier for local users to gain privileges by leveraging a program that...

6.2AI Score

0.0004EPSS

2014-05-08 10:55 AM
45
cve
cve

CVE-2011-1011

The seunshare_mount function in sandbox/seunshare.c in seunshare in certain Red Hat packages of policycoreutils 2.0.83 and earlier in Red Hat Enterprise Linux (RHEL) 6 and earlier, and Fedora 14 and earlier, mounts a new directory on top of /tmp without assigning root ownership and the sticky bit.....

6.7AI Score

0.0004EPSS

2011-02-24 09:00 PM
26