CVE-2016-10089

Nagios 4.3.2 and earlier allows local users to gain root privileges via a hard link attack on the Nagios init script file, related to CVE-2016-8641.
References
Link Resource
http://www.openwall.com/lists/oss-security/2016/12/30/6 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/95171 Third Party Advisory VDB Entry
http://www.openwall.com/lists/oss-security/2016/12/30/6 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/95171 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:nagios:nagios:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:43

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2016/12/30/6 - Mailing List, Third Party Advisory () http://www.openwall.com/lists/oss-security/2016/12/30/6 - Mailing List, Third Party Advisory
References () http://www.securityfocus.com/bid/95171 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/95171 - Third Party Advisory, VDB Entry

Information

Published : 2017-02-15 15:59

Updated : 2024-11-21 02:43


NVD link : CVE-2016-10089

Mitre link : CVE-2016-10089

CVE.ORG link : CVE-2016-10089


JSON object : View

Products Affected

nagios

  • nagios
CWE
CWE-264

Permissions, Privileges, and Access Controls