|
|
| |
|
| |
keepalived: denial of service
| Package(s): | keepalived |
CVE #(s): | CVE-2011-1784
|
| Created: | July 10, 2012 |
Updated: | April 10, 2013 |
| Description: |
From the CVE entry:
The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.pid, and (3) vrrp.pid files in /var/run/, which allows local users to kill arbitrary processes by writing a PID to one of these files. |
| Alerts: |
|
( Log in to post comments)
|
|
|