vulnerability
Red Hat: CVE-2020-24330: fails to drop the root gid privilege when no longer needed (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | 2020-08-13 | 2021-05-21 | 2023-12-15 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
2020-08-13
Added
2021-05-21
Modified
2023-12-15
Description
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges instead of by the tss user, it fails to drop the root gid privilege when no longer needed.
Solution(s)
redhat-upgrade-trousersredhat-upgrade-trousers-debuginforedhat-upgrade-trousers-debugsourceredhat-upgrade-trousers-develredhat-upgrade-trousers-libredhat-upgrade-trousers-lib-debuginfo
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.