vulnerability

Gentoo Linux: CVE-2017-18285: BURP: Multiple vulnerabilities

Severity
4
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:N)
Published
Jun 4, 2018
Added
Jun 14, 2018
Modified
Aug 13, 2025

Description

The Gentoo app-backup/burp package before 2.1.32 has incorrect group ownership of the /etc/burp directory, which might allow local users to obtain read and write access to arbitrary files by leveraging access to a certain account for a burp-server.conf change.

Solution

gentoo-linux-upgrade-app-backup-burp
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.