vulnerability

Amazon Linux 2023: CVE-2023-30630: Medium priority package update for dmidecode

Severity
6
CVSS
(AV:L/AC:L/Au:S/C:C/I:N/A:C)
Published
04/13/2023
Added
02/17/2025
Modified
02/17/2025

Description

Dmidecode before 3.5 allows -dump-bin to overwrite a local file. This has security relevance because, for example, execution of Dmidecode via Sudo is plausible.
A vulnerability was found in dmidecode, which allows -dump-bin to overwrite a local file. This issue may lead to the execution of dmidecode via Sudo.

Solution(s)

amazon-linux-2023-upgrade-dmidecodeamazon-linux-2023-upgrade-dmidecode-debuginfoamazon-linux-2023-upgrade-dmidecode-debugsource
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.