vulnerability

Oracle Linux: CVE-2020-24331: ELSA-2021-1627: trousers security, bug fix, and enhancement update (MODERATE) (Multiple Advisories)

Severity
7
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
Aug 13, 2020
Added
May 26, 2021
Modified
Nov 22, 2024

Description

An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the tss user still has read and write access to the /etc/tcsd.conf file (which contains various settings related to this daemon).

Solution(s)

oracle-linux-upgrade-trousersoracle-linux-upgrade-trousers-develoracle-linux-upgrade-trousers-lib
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.