cvelist/2024/47xxx/CVE-2024-47191.json
2024-10-09 06:00:30 +00:00

97 lines
3.8 KiB
JSON

{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2024-47191",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "pam_oath.so in oath-toolkit 2.6.7 through 2.6.11 before 2.6.12 allows root privilege escalation because, in the context of PAM code running as root, it mishandles usersfile access, such as by calling fchown in the presence of a symlink."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://gitlab.com/oath-toolkit/oath-toolkit/-/issues/43",
"refsource": "MISC",
"name": "https://gitlab.com/oath-toolkit/oath-toolkit/-/issues/43"
},
{
"refsource": "MISC",
"name": "https://www.openwall.com/lists/oss-security/2024/10/04/2",
"url": "https://www.openwall.com/lists/oss-security/2024/10/04/2"
},
{
"refsource": "MISC",
"name": "https://security.opensuse.org/2024/10/04/oath-toolkit-vulnerability.html",
"url": "https://security.opensuse.org/2024/10/04/oath-toolkit-vulnerability.html"
},
{
"refsource": "MISC",
"name": "https://www.nongnu.org/oath-toolkit/security/CVE-2024-47191",
"url": "https://www.nongnu.org/oath-toolkit/security/CVE-2024-47191"
},
{
"refsource": "MISC",
"name": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/60d9902b5c20f27e70f8e9c816bfdc0467567e1a",
"url": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/60d9902b5c20f27e70f8e9c816bfdc0467567e1a"
},
{
"refsource": "MISC",
"name": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/3235a52f6b87cd1c5da6508f421ac261f5e33a70",
"url": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/3235a52f6b87cd1c5da6508f421ac261f5e33a70"
},
{
"refsource": "MISC",
"name": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/3271139989fde35ab0163b558fc29e80c3a280e5",
"url": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/3271139989fde35ab0163b558fc29e80c3a280e5"
},
{
"refsource": "MISC",
"name": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/95ef255e6a401949ce3f67609bf8aac2029db418",
"url": "https://gitlab.com/oath-toolkit/oath-toolkit/-/commit/95ef255e6a401949ce3f67609bf8aac2029db418"
}
]
}
}