PT-2006-1303 · Unknown · Grsecurity
Published
2006-01-17
·
Updated
2017-07-20
·
CVE-2006-0228
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
grsecurity versions prior to 2.1.8
Description
The issue arises from the RBAC functionality not properly handling a scenario where the admin role creates a service and then exits the shell without unauthenticating, resulting in the service being restarted with the admin role still active.
Recommendations
For versions prior to 2.1.8, update to version 2.1.8 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Grsecurity