vulnerability

Oracle Linux: CVE-2020-24330: ELSA-2021-1627: trousers security, bug fix, and enhancement update (MODERATE)

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Sep 2, 2020
Added
May 26, 2021
Modified
Dec 3, 2025

Description

An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges instead of by the tss user, it fails to drop the root gid privilege when no longer needed.

Solutions

oracle-linux-upgrade-trousersoracle-linux-upgrade-trousers-develoracle-linux-upgrade-trousers-lib
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.