Vulnerabilities
Vulnerable Software
Man-Db Project:  >> Man-Db  >> 2.4.1  Security Vulnerabilities
man-db before 2.8.5 on Gentoo allows local users (with access to the man user account) to gain root privileges because /usr/bin/mandb is executed by root but not owned by root. (Also, the owner can strip the setuid and setgid bits.)
CVSS Score
7.8
EPSS Score
0.0
Published
2023-01-26
The daily mandb cleanup job in Man-db before 2.7.6.1-1 as packaged in Ubuntu and Debian allows local users with access to the man account to gain privileges via vectors involving insecure chown use.
CVSS Score
7.8
EPSS Score
0.004
Published
2017-09-28


Contact Us

Shodan ® - All rights reserved