CVE-2017-18240
Summary
| CVE | CVE-2017-18240 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-03-19 02:29:00 UTC |
| Updated | 2018-04-18 16:14:00 UTC |
| Description | The Gentoo app-admin/collectd package before 5.7.2-r1 sets the ownership of PID file directory to the collectd account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script sends a SIGKILL (when the service is stopped). |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 628540 – (CVE-2017-18240) <app-admin/collectd-5.7.2-r1: privilege escalation via PID file manipulation | CONFIRM | bugs.gentoo.org | Issue Tracking, Vendor Advisory |
| collectd: Multiple vulnerabilities (GLSA 201803-10) — Gentoo security | GENTOO | security.gentoo.org | Vendor Advisory |
| Gentoo Collectd Package CVE-2017-18240 Local Privilege Escalation Vulnerability | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 710277 Gentoo Linux collectd Multiple Vulnerabilities (GLSA 201803-10)