Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25355
HistoryMay 10, 2020 - 11:27 p.m.

Privilege Escalation

2020-05-1023:27:53
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.001 Low

EPSS

Percentile

23.5%

freeradius is vulnerable to privilege escalation. A local attacker who has control of the radiusd user is able to gain root access by tricking logrotate into writing a radiusd-writable file to a directory, which would normally be inaccessible to the radiusd user.

References