Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24480
HistoryApr 10, 2020 - 12:55 a.m.

Privilege Escalation

2020-04-1000:55:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.0004 Low

EPSS

Percentile

10.3%

glibc is vulnerable to privilege escalation. It was discovered that the glibc addmntent() function did not sanitize its input properly. A local attacker could possibly use this flaw to inject malformed lines into /etc/mtab via certain setuid mount helpers, if the attacker were allowed to mount to an arbitrary directory under their control.

References