Back to search
CVE-2013-6876
Published: Apr 6, 2018
Modified: Aug 6, 2024
PUBLISHED
Description
The (1) pty_init_terminal and (2) pipe_init_terminal functions in main.c in s3dvt 0.2.2 and earlier allows local users to gain privileges by leveraging setuid permissions and usage of bash 4.3 and earlier. NOTE: this vulnerability was fixed with commit ad732f00b411b092c66a04c359da0f16ec3b387, but the version number was not changed.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
67789
vdb-entry
x_refsource_BID
[oss-security] 20140603 CVE-2013-6876 s3dvt Root shell
mailing-list
x_refsource_MLIST
20140602 [FD] CVE-2013-6876 s3dvt Root shell
mailing-list
x_refsource_BUGTRAQ
http://hmarco.org/bugs/s3dvt_0.2.2-root-shell.html
x_refsource_MISC
20140603 CVE-2013-6876 s3dvt Root shell
mailing-list
x_refsource_BUGTRAQ
20140604 CVE-2013-6876 s3dvt Root shell
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now