First published: Sun Dec 29 2013(Updated: )
GNU Rush 1.7 does not properly drop privileges, which allows local users to read arbitrary files via the --lint option.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/rush | 1.8+dfsg-1.1 2.3-1 | |
GNU Rush | =1.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.