Back to search
CVE-2019-20044
Published: Feb 24, 2020
Modified: Aug 5, 2024
PUBLISHED
Description
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option. Zsh fails to overwrite the saved uid, so the original privileges can be restored by executing MODULE_PATH=/dir/with/module zmodload with a module that calls setuid().
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://zsh.sourceforge.net/releases.html
x_refsource_MISC
https://github.com/XMB5/zsh-privileged-upgrade
x_refsource_MISC
https://www.zsh.org/mla/zsh-announce/141
x_refsource_MISC
[debian-lts-announce] 20200302 [SECURITY] [DLA 2117-1] zsh security update
mailing-list
x_refsource_MLIST
FEDORA-2020-3f38f3e517
vendor-advisory
x_refsource_FEDORA
FEDORA-2020-9009363f0f
vendor-advisory
x_refsource_FEDORA
GLSA-202003-55
vendor-advisory
x_refsource_GENTOO
https://support.apple.com/kb/HT211170
x_refsource_CONFIRM
https://support.apple.com/kb/HT211175
x_refsource_CONFIRM
https://support.apple.com/kb/HT211171
x_refsource_CONFIRM
https://support.apple.com/kb/HT211168
x_refsource_CONFIRM
20200529 APPLE-SA-2020-05-26-1 iOS 13.5 and iPadOS 13.5
mailing-list
x_refsource_FULLDISC
20200529 APPLE-SA-2020-05-26-5 watchOS 6.2.5
mailing-list
x_refsource_FULLDISC
20200529 APPLE-SA-2020-05-26-3 macOS Catalina 10.15.5, Security Update 2020-003 Mojave, Security Update 2020-003 High Sierra
mailing-list
x_refsource_FULLDISC
20200529 APPLE-SA-2020-05-26-4 tvOS 13.4.5
mailing-list
x_refsource_FULLDISC
https://support.apple.com/HT211168
x_refsource_CONFIRM
https://support.apple.com/HT211170
x_refsource_CONFIRM
https://support.apple.com/HT211171
x_refsource_CONFIRM
https://support.apple.com/HT211175
x_refsource_CONFIRM
[debian-lts-announce] 20201201 [SECURITY] [DLA 2470-1] zsh security update
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now