CVE-2018-25078
26.01.2023, 21:15
man-db before 2.8.5 on Gentoo allows local users (with access to the man user account) to gain root privileges because /usr/bin/mandb is executed by root but not owned by root. (Also, the owner can strip the setuid and setgid bits.)Enginsight
| Vendor | Product | Version |
|---|---|---|
| man-db_project | man-db | 𝑥 < 2.8.5 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration