PT-2019-14823 · Ezmaster · Ezmaster

Touv

·

Published

2019-11-29

·

Updated

2020-10-16

·

CVE-2019-16767

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions ezmaster versions prior to 5.2.11
Description The issue concerns the admin sys mode, which is now conditional and dedicated to a special case. By default, since version 5.2.11, no instance or container is launched with advanced capabilities, meaning they are not launched as root.
Recommendations For versions prior to 5.2.11, update to version 5.2.11 or later to ensure instances are not launched with advanced capabilities by default.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-16767
GHSA-G654-5QJF-G6CX

Affected Products

Ezmaster