René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

104 lines
3.0 KiB
JSON

{
"id": "CVE-2011-1946",
"sourceIdentifier": "secalert@redhat.com",
"published": "2011-07-07T21:55:02.133",
"lastModified": "2017-08-17T01:34:28.370",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure of the setgid or setuid function, which allows local users to gain privileges by leveraging access to two unprivileged user accounts, and running many processes under one of these accounts."
},
{
"lang": "es",
"value": "gnomesu-pam-backend en libgnomesu v1.0.0 muestra un mensaje de error pero contin\u00faa con la ejecuci\u00f3n normal en caso de fallo de la funci\u00f3n setuid o setgid, lo que permite a usuarios locales conseguir privilegios, aprovechando el acceso a dos cuentas de usuario sin privilegios, y ejecutando muchos procesos en una de estas cuentas."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 7.2
},
"baseSeverity": "HIGH",
"exploitabilityScore": 3.9,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-264"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:hongli_lai:libgnomesu:1.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "32364E8A-2810-492A-9008-6EEA80D02ED9"
}
]
}
]
}
],
"references": [
{
"url": "http://openwall.com/lists/oss-security/2011/05/30/2",
"source": "secalert@redhat.com",
"tags": [
"Patch"
]
},
{
"url": "http://openwall.com/lists/oss-security/2011/05/31/11",
"source": "secalert@redhat.com",
"tags": [
"Patch"
]
},
{
"url": "http://www.securityfocus.com/bid/48035",
"source": "secalert@redhat.com"
},
{
"url": "https://bugzilla.novell.com/show_bug.cgi?id=695627",
"source": "secalert@redhat.com",
"tags": [
"Patch"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/67720",
"source": "secalert@redhat.com"
}
]
}