ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36657”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36657
Published
2023-01-25
CVSS:
7.8
ShadowTrackr CVSS:
4.4
Summary:
uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges by creating a hard link within the /var/spool/uptimed directory, because there is an unsafe chown -R call.