CVE-2024-10394 - CERT CVE
ID CVE-2024-10394
Sažetak A local user can bypass the OpenAFS PAG (Process Authentication Group) throttling mechanism in Unix clients, allowing the user to create a PAG using an existing id number, effectively joining the PAG and letting the user steal the credentials in that PAG.
Reference
CVSS
Base: 0.0
Impact: 0.0
Exploitability:1.8
Pristup
VektorSloženostAutentikacija
LOCAL LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE NONE
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:N
Zadnje važnije ažuriranje 19-11-2024 - 16:35
Objavljeno 14-11-2024 - 20:15