Back to search
CVE-2012-2653
Published: Jul 12, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities in the daemon.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20120525 Re: CVE Request: powerdns does not clear supplementary groups
mailing-list
x_refsource_MLIST
FEDORA-2012-8675
vendor-advisory
x_refsource_FEDORA
[oss-security] 20120525 Re: CVE Request: powerdns does not clear supplementary groups
mailing-list
x_refsource_MLIST
[oss-security] 20120524 Re: CVE Request: powerdns does not clear supplementary groups
mailing-list
x_refsource_MLIST
DSA-2481
vendor-advisory
x_refsource_DEBIAN
[oss-security] 20120524 Re: CVE Request: powerdns does not clear supplementary groups
mailing-list
x_refsource_MLIST
MDVSA-2012:113
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2012-8702
vendor-advisory
x_refsource_FEDORA
FEDORA-2012-8677
vendor-advisory
x_refsource_FEDORA
GLSA-201607-16
vendor-advisory
x_refsource_GENTOO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now