CVE-2019-3811 - CERT CVE
ID CVE-2019-3811
Sažetak A vulnerability was found in sssd. If a user was configured with no home directory set, sssd would return '/' (the root directory) instead of '' (the empty string / no home directory). This could impact services that restrict the user's filesystem access to within their home directory through chroot() etc. All versions before 2.1 are vulnerable.
Reference
CVSS
Base: 2.7
Impact: 2.9
Exploitability:5.1
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE PARTIAL
CVSS vektor AV:A/AC:L/Au:S/C:N/I:N/A:P
Zadnje važnije ažuriranje 29-05-2023 - 17:15
Objavljeno 15-01-2019 - 15:29