The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a database and tools to fix them.

vulnerability CVE-2019-3461

tmpreaper: privilege escalation via Race Condition

Synthesis of the vulnerability

An attacker can bypass restrictions via Race Condition of tmpreaper, in order to escalate his privileges.
Impacted software: Debian.
Severity of this computer vulnerability: 2/4.
Consequences of an attack: administrator access/rights, privileged access/rights.
Attacker's origin: user shell.
Creation date: 11/01/2019.
Références of this announce: CVE-2019-3461, DLA-1640-1, DSA-4365-1, VIGILANCE-VUL-28240.

Description of the vulnerability

An attacker can bypass restrictions via Race Condition of tmpreaper, in order to escalate his privileges.
Full Vigil@nce bulletin... (Free trial)

Computer vulnerabilities tracking service

Vigil@nce provides a software vulnerability alert. The Vigil@nce security watch publishes vulnerability bulletins about threats impacting the information system. The technology watch team tracks security threats targeting the computer system. Each administrator can customize the list of products for which he wants to receive vulnerability alerts.