Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-2653
Description:arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities in the daemon.
Test IDs: 1.3.6.1.4.1.25623.1.0.831705   1.3.6.1.4.1.25623.1.1.4.2012.0987.1   1.3.6.1.4.1.25623.1.0.72137   1.3.6.1.4.1.25623.1.0.71461   1.3.6.1.4.1.25623.1.0.864484   1.3.6.1.4.1.25623.1.0.864475   1.3.6.1.4.1.25623.1.0.864479  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-2653
DSA-2481
http://www.debian.org/security/2012/dsa-2481
FEDORA-2012-8675
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082569.html
FEDORA-2012-8677
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082553.html
FEDORA-2012-8702
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082565.html
GLSA-201607-16
https://security.gentoo.org/glsa/201607-16
MDVSA-2012:113
http://www.mandriva.com/security/advisories?name=MDVSA-2012:113
[oss-security] 20120524 Re: CVE Request: powerdns does not clear supplementary groups
http://www.openwall.com/lists/oss-security/2012/05/24/12
[oss-security] 20120524 Re: CVE Request: powerdns does not clear supplementary groups
http://www.openwall.com/lists/oss-security/2012/05/24/14
[oss-security] 20120525 Re: CVE Request: powerdns does not clear supplementary groups
http://www.openwall.com/lists/oss-security/2012/05/24/13
[oss-security] 20120525 Re: CVE Request: powerdns does not clear supplementary groups
http://www.openwall.com/lists/oss-security/2012/05/25/5




© 1998-2025 E-Soft Inc. All rights reserved.