2 results (0.003 seconds)

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

06 Apr 2006 — vserver in util-vserver 0.30.209 executes a command as root when the suexec userid parameter is invalid and non-numeric, which might cause local users to inadvertently execute dangerous commands as root. • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=360438 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

31 Dec 2005 — util-vserver before 0.30.208-1 with kernel-patch-vserver before 1.9.5.5 and 2.x before 2.3 for Debian GNU/Linux sets a default policy that trusts unknown capabilities, which could allow local users to conduct unauthorized activities. • http://secunia.com/advisories/19333 •