Vulnerability Details CVE-2017-20148
In the ebuild package through logcheck-1.3.23.ebuild for Logcheck on Gentoo, it is possible to achieve root privilege escalation from the logcheck user because of insecure recursive chown calls.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.6%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2017-20148
-
cpe:2.3:a:debian:logcheck:-
-
cpe:2.3:a:debian:logcheck:1.3.23