Red Hat userhelper vulnerability

by admin

Thursday, July 23rd, 2015 at 9:35 pm

Two security vulnerabilities were found in the userhelper utility, (part of the usermode package) and the libuser library. Authenticated, local users with shell access could combine these vulnerabilities to achieve local privilege escalation to the root user, it lets users change /etc/passwd. These flaws have been assigned CVE-2015-3245 and CVE-2015-3246. Info was released as soon as patch was, better hurry and patch 🙂 Src: http://seclists.org/oss-sec/2015/q3/186

Your IP: 172.69.58.162
Hostname: 172.69.58.162

We love our country, but fear our government.