|
|
| |
|
| |
arpwatch: privilege escalation
| Package(s): | arpwatch |
CVE #(s): | CVE-2012-2653
|
| Created: | June 4, 2012 |
Updated: | April 5, 2013 |
| Description: |
From the Debian advisory:
Steve Grubb from Red Hat discovered that a patch for arpwatch (as shipped at
least in Red Hat and Debian distributions) in order to make it drop root
privileges would fail to do so and instead add the root group to the list of
the daemon uses. |
| Alerts: |
|
( Log in to post comments)
|
|
|