2.1
CVE-2004-0564
- EPSS 0.07%
- Published 23.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "is NOT designed to run setuid-root." Therefore this identifier applies *only* to those configurations and installations under which pppoe is run setuid root despite the developer's warnings.
Data is provided by the National Vulnerability Database (NVD)
Roaring Penguin ≫ Pppoe Version3.0
Roaring Penguin ≫ Pppoe Version3.3
Roaring Penguin ≫ Pppoe Version3.5
Debian ≫ Debian Linux Version3.0
Debian ≫ Debian Linux Version3.0 Editionalpha
Debian ≫ Debian Linux Version3.0 Editionarm
Debian ≫ Debian Linux Version3.0 Editionhppa
Debian ≫ Debian Linux Version3.0 Editionia-32
Debian ≫ Debian Linux Version3.0 Editionia-64
Debian ≫ Debian Linux Version3.0 Editionm68k
Debian ≫ Debian Linux Version3.0 Editionmips
Debian ≫ Debian Linux Version3.0 Editionmipsel
Debian ≫ Debian Linux Version3.0 Editionppc
Debian ≫ Debian Linux Version3.0 Editions-390
Debian ≫ Debian Linux Version3.0 Editionsparc
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.07% | 0.19 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:N/I:P/A:N
|