{"api_version":"1","generated_at":"2026-07-23T03:25:30+00:00","cve":"CVE-2011-2490","urls":{"html":"https://cve.report/CVE-2011-2490","api":"https://cve.report/api/cve/CVE-2011-2490.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-2490","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-2490"},"summary":{"title":"CVE-2011-2490","description":"opielogin.c in opielogin in OPIE 2.4.1-test1 and earlier does not check the return value of the setuid system call, which allows local users to gain privileges by arranging for an account to already be running its maximum number of processes.","state":"PUBLISHED","assigner":"redhat","published_at":"2011-07-27 02:55:02","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-20","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.2","severity":"","vector":"AV:L/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/45136","name":"http://secunia.com/advisories/45136","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Debian update for opie - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://hermes.opensuse.org/messages/10082068","name":"https://hermes.opensuse.org/messages/10082068","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Hermes - openSUSE Notification Client","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://secunia.com/advisories/39966","name":"http://secunia.com/advisories/39966","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"OPIE \"__opiereadrec()\" Off-by-One and \"opielogin\" Privilege Escalation Vulnerabilities - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2011/06/22/6","name":"http://www.openwall.com/lists/oss-security/2011/06/22/6","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"oss-security - CVE requests: opie off by one and setuid() failure","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=631345","name":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=631345","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"#631345 - opie: missing setuid() retval check in opielogin - Debian Bug report logs","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzillafiles.novell.org/attachment.cgi?id=435901","name":"https://bugzillafiles.novell.org/attachment.cgi?id=435901","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Access Denied","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/45448","name":"http://secunia.com/advisories/45448","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA45448 - SUSE update for opie - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2011/06/23/5","name":"http://www.openwall.com/lists/oss-security/2011/06/23/5","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"oss-security - Re: CVE requests: opie off by one and setuid()\n failure","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2011/dsa-2281","name":"http://www.debian.org/security/2011/dsa-2281","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Debian -- Security Information -- DSA-2281-1 opie","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.novell.com/show_bug.cgi?id=698772","name":"https://bugzilla.novell.com/show_bug.cgi?id=698772","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"Bug 698772 – VUL-0: opie: off by one errors in opiesu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://hermes.opensuse.org/messages/10082052","name":"https://hermes.opensuse.org/messages/10082052","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Hermes - openSUSE Notification Client","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/48390","name":"http://www.securityfocus.com/bid/48390","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"OPIE Off By One Buffer Overflow Vulnerability and Local Privilege Escalation Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-2490","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-2490","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.11","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.21","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.22","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.32","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"2.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"2490","vulnerable":"1","versionEndIncluding":"2.4.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"nrl","cpe5":"opie","cpe6":"*","cpe7":"test1","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T23:00:34.168Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"[oss-security] 20110623 Re: CVE requests: opie off by one and setuid() failure","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2011/06/23/5"},{"name":"[oss-security] 20110622 CVE requests: opie off by one and setuid() failure","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2011/06/22/6"},{"name":"openSUSE-SU-2011:0848","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"https://hermes.opensuse.org/messages/10082052"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.novell.com/show_bug.cgi?id=698772"},{"name":"DSA-2281","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2011/dsa-2281"},{"name":"39966","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/39966"},{"name":"SUSE-SU-2011:0849","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"https://hermes.opensuse.org/messages/10082068"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=631345"},{"name":"48390","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/48390"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzillafiles.novell.org/attachment.cgi?id=435901"},{"name":"45448","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45448"},{"name":"45136","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45136"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2011-06-22T00:00:00.000Z","descriptions":[{"lang":"en","value":"opielogin.c in opielogin in OPIE 2.4.1-test1 and earlier does not check the return value of the setuid system call, which allows local users to gain privileges by arranging for an account to already be running its maximum number of processes."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2011-09-07T09:00:00.000Z","orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat"},"references":[{"name":"[oss-security] 20110623 Re: CVE requests: opie off by one and setuid() failure","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2011/06/23/5"},{"name":"[oss-security] 20110622 CVE requests: opie off by one and setuid() failure","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2011/06/22/6"},{"name":"openSUSE-SU-2011:0848","tags":["vendor-advisory","x_refsource_SUSE"],"url":"https://hermes.opensuse.org/messages/10082052"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.novell.com/show_bug.cgi?id=698772"},{"name":"DSA-2281","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2011/dsa-2281"},{"name":"39966","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/39966"},{"name":"SUSE-SU-2011:0849","tags":["vendor-advisory","x_refsource_SUSE"],"url":"https://hermes.opensuse.org/messages/10082068"},{"tags":["x_refsource_CONFIRM"],"url":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=631345"},{"name":"48390","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/48390"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzillafiles.novell.org/attachment.cgi?id=435901"},{"name":"45448","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45448"},{"name":"45136","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45136"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"secalert@redhat.com","ID":"CVE-2011-2490","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"opielogin.c in opielogin in OPIE 2.4.1-test1 and earlier does not check the return value of the setuid system call, which allows local users to gain privileges by arranging for an account to already be running its maximum number of processes."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"[oss-security] 20110623 Re: CVE requests: opie off by one and setuid() failure","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2011/06/23/5"},{"name":"[oss-security] 20110622 CVE requests: opie off by one and setuid() failure","refsource":"MLIST","url":"http://www.openwall.com/lists/oss-security/2011/06/22/6"},{"name":"openSUSE-SU-2011:0848","refsource":"SUSE","url":"https://hermes.opensuse.org/messages/10082052"},{"name":"https://bugzilla.novell.com/show_bug.cgi?id=698772","refsource":"CONFIRM","url":"https://bugzilla.novell.com/show_bug.cgi?id=698772"},{"name":"DSA-2281","refsource":"DEBIAN","url":"http://www.debian.org/security/2011/dsa-2281"},{"name":"39966","refsource":"SECUNIA","url":"http://secunia.com/advisories/39966"},{"name":"SUSE-SU-2011:0849","refsource":"SUSE","url":"https://hermes.opensuse.org/messages/10082068"},{"name":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=631345","refsource":"CONFIRM","url":"http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=631345"},{"name":"48390","refsource":"BID","url":"http://www.securityfocus.com/bid/48390"},{"name":"https://bugzillafiles.novell.org/attachment.cgi?id=435901","refsource":"CONFIRM","url":"https://bugzillafiles.novell.org/attachment.cgi?id=435901"},{"name":"45448","refsource":"SECUNIA","url":"http://secunia.com/advisories/45448"},{"name":"45136","refsource":"SECUNIA","url":"http://secunia.com/advisories/45136"}]}}}},"cveMetadata":{"assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","assignerShortName":"redhat","cveId":"CVE-2011-2490","datePublished":"2011-07-27T01:29:00.000Z","dateReserved":"2011-06-15T00:00:00.000Z","dateUpdated":"2024-08-06T23:00:34.168Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-07-27 02:55:02","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-20","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:*:test1:*:*:*:*:*:*","versionEndIncluding":"2.4.1","matchCriteriaId":"AEEC73FC-2BB6-4B8F-9596-BBB287AFFDA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.2:*:*:*:*:*:*:*","matchCriteriaId":"9D33B387-8EE6-4F36-A4B5-509FF8DA8C1E"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.3:*:*:*:*:*:*:*","matchCriteriaId":"F9B3734D-F6CB-4242-92FA-EDF425CCBCEF"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.4:*:*:*:*:*:*:*","matchCriteriaId":"E2B076A0-0216-4A52-ABA6-2E511FB6DB5E"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.10:*:*:*:*:*:*:*","matchCriteriaId":"32B7BBAB-609B-4D4D-BF5A-C4E95F0A8C51"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.11:*:*:*:*:*:*:*","matchCriteriaId":"5889C86D-4285-4B22-B3F0-76984D8CEC4B"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.21:*:*:*:*:*:*:*","matchCriteriaId":"E0779EF0-9638-474E-9EF2-971ADA10F1D9"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.22:*:*:*:*:*:*:*","matchCriteriaId":"5AEB7E9A-3F68-4F20-A073-751A76452C67"},{"vulnerable":true,"criteria":"cpe:2.3:a:nrl:opie:2.32:*:*:*:*:*:*:*","matchCriteriaId":"F9A53F58-7514-4B07-AC56-C6F928F9D3F3"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"2490","Ordinal":"1","Title":"CVE-2011-2490","CVE":"CVE-2011-2490","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"2490","Ordinal":"1","NoteData":"opielogin.c in opielogin in OPIE 2.4.1-test1 and earlier does not check the return value of the setuid system call, which allows local users to gain privileges by arranging for an account to already be running its maximum number of processes.","Type":"Description","Title":"CVE-2011-2490"},{"CveYear":"2011","CveId":"2490","Ordinal":"2","NoteData":"2011-07-26","Type":"Other","Title":"Published"},{"CveYear":"2011","CveId":"2490","Ordinal":"3","NoteData":"2011-09-07","Type":"Other","Title":"Modified"}]}}}