There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root.
Metrics
Affected Vendors & Products
References
History
Mon, 19 Aug 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-367 | |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: canonical
Published: 2024-06-03T18:40:32.847Z
Updated: 2024-08-19T14:10:41.358Z
Reserved: 2021-10-23T01:51:35.297Z
Link: CVE-2021-3899
Vulnrichment
Updated: 2024-08-03T17:09:09.767Z
NVD
Status : Awaiting Analysis
Published: 2024-06-03T19:15:08.940
Modified: 2024-11-21T06:22:43.603
Link: CVE-2021-3899
Redhat
No data.