PT-2014-2191 · Gilles Lamiral · Domain Technologie Control

Mike Oconnor

·

Published

2014-03-20

·

Updated

2014-03-21

·

CVE-2011-5275

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Domain Technologie Control (DTC) versions prior to 0.34.1
Description The issue in Domain Technologie Control (DTC) allows context-dependent users to gain privileges more easily due to the install script granting sudo permissions for chrootuid to the dtc user.
Recommendations For versions prior to 0.34.1, update to version 0.34.1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-5275

Affected Products

Domain Technologie Control