CVE-2023-40303

CVE-2023-40303

GNU inetutils through 2.4 may allow privilege escalation because of unchecked return values of set*id() family functions in ftpd, rcp, rlogin, rsh, rshd, and uucpd. This is, for example, relevant if the setuid system call fails when a process is trying to drop privileges before letting an ordinary user control the activities of the process.

Source: CVE-2023-40303

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다