CVE-2016-10730: High severity zmanda zrm for mysql vulnerability

Published Oct 24, 2018
·
Updated

An issue was discovered in Amanda 3.3.1. A user with backup privileges can trivially compromise a client installation. Amstar is an Amanda Application API script. It should not be run by users directly. It uses star to backup and restore data. It runs binaries with root permissions when parsing the command line argument --star-path.

Affected Software

2 affected components
Zmanda Amanda=3.3.1
redhat Enterprise Linux=7.0

Event History

Oct 24, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2016-10730?

The severity of CVE-2016-10730 is considered to be high due to the potential for a user with backup privileges to compromise the client installation.

2

How do I fix CVE-2016-10730?

To fix CVE-2016-10730, it's recommended to restrict access to the Amstar script and review user privileges related to the Amanda backup system.

3

What versions of Amanda are affected by CVE-2016-10730?

CVE-2016-10730 specifically affects Amanda version 3.3.1.

4

Can CVE-2016-10730 affect Red Hat Enterprise Linux?

Yes, CVE-2016-10730 can affect Red Hat Enterprise Linux version 7.0 when running Amanda version 3.3.1.

5

Who can exploit CVE-2016-10730?

A user with backup privileges can exploit CVE-2016-10730 to compromise the client installation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203