PT-2019-14823 · Ezmaster · Ezmaster
Touv
·
Published
2019-11-29
·
Updated
2020-10-16
·
CVE-2019-16767
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ezmaster versions prior to 5.2.11
Description
The issue concerns the admin sys mode, which is now conditional and dedicated to a special case. By default, since version 5.2.11, no instance or container is launched with advanced capabilities, meaning they are not launched as root.
Recommendations
For versions prior to 5.2.11, update to version 5.2.11 or later to ensure instances are not launched with advanced capabilities by default.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ezmaster