tcptraceroute Failure To Relinquish Root Privileges Weakness
BID:8020
Info
tcptraceroute Failure To Relinquish Root Privileges Weakness
| Bugtraq ID: | 8020 |
| Class: | Design Error |
| CVE: |
CVE-2003-0489 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 24 2003 12:00AM |
| Updated: | Jul 11 2009 10:56PM |
| Credit: | This issue was announced in a Debian advisory. |
| Vulnerable: |
tcptraceroute tcptraceroute 1.2 |
| Not Vulnerable: | |
Discussion
tcptraceroute Failure To Relinquish Root Privileges Weakness
tcptraceroute fails to properly relinquish all root privileges it obtains after obtaining a file descriptor. This condition is not currently known to be exploitable, however, it could potentially allow for local privilege escalation.
tcptraceroute fails to properly relinquish all root privileges it obtains after obtaining a file descriptor. This condition is not currently known to be exploitable, however, it could potentially allow for local privilege escalation.
Exploit / POC
tcptraceroute Failure To Relinquish Root Privileges Weakness
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
tcptraceroute Failure To Relinquish Root Privileges Weakness
References:
References:
- tcptraceroute (tcptraceroute)