Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-5397
HistoryDec 09, 2008 - 12:00 a.m.

CVE-2008-5397

2008-12-0900:00:00
ubuntu.com
ubuntu.com
8

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0

Percentile

5.1%

Tor before 0.2.0.32 does not properly process the (1) User and (2) Group
configuration options, which might allow local users to gain privileges by
leveraging unintended supplementary group memberships of the Tor process.

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0

Percentile

5.1%