In the ebuild package through logcheck-1.3.23.ebuild for Logcheck on Gentoo, it is possible to achieve root privilege escalation from the logcheck user because of insecure recursive chown calls.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-11154 | In the ebuild package through logcheck-1.3.23.ebuild for Logcheck on Gentoo, it is possible to achieve root privilege escalation from the logcheck user because of insecure recursive chown calls. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 29 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-732 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-29T13:30:40.522Z
Reserved: 2022-09-20T00:00:00.000Z
Link: CVE-2017-20148
Updated: 2024-08-05T21:45:26.186Z
Status : Modified
Published: 2022-09-20T18:15:09.993
Modified: 2025-05-29T14:15:27.133
Link: CVE-2017-20148
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD