tmux: privilege escalation
| Package(s): | tmux | CVE #(s): | CVE-2011-1496 | ||||||||||||
| Created: | April 8, 2011 | Updated: | April 19, 2011 | ||||||||||||
| Description: | From the Debian advisory:
Daniel Danner discovered that tmux, a terminal multiplexer, is not properly dropping group privileges. Due to a patch introduced by Debian, when invoked with the -S option, tmux is not dropping permissions obtained through its setgid installation. | ||||||||||||||
| Alerts: |
| ||||||||||||||
