CVE-2018-12615
An issue was discovered in switchGroup() in agent/ExecHelper/ExecHelperMain.cpp in Phusion Passenger before 5.3.2. The set of groups (gidset) is not set correctly, leaving it up to randomness (i.e., uninitialized memory) which supplementary groups are actually being set while lowering privileges.
Published
2018-06-21T15:29:00.367
Last Modified
2024-11-21T03:45:32.913
Status
Modified
Source
[email protected]
Severity
CVSSv3.0: 5.3 (MEDIUM)
CVSSv2 Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
- Access Vector: NETWORK
- Access Complexity: LOW
- Authentication: NONE
- Confidentiality Impact: NONE
- Integrity Impact: PARTIAL
- Availability Impact: NONE
Exploitability Score
10.0
Impact Score
2.9
Weaknesses
Affected Vendors & Products
| Type |
Vendor |
Product |
Version/Range |
Vulnerable? |
| Application |
phusion
|
passenger
|
< 5.3.2 |
Yes
|
References