First published: Thu Nov 02 2017(Updated: )
Privilege escalation flaws were found in the Red Hat initialization scripts of PostgreSQL. An attacker with access to the postgres user account could use these flaws to obtain root access on the server machine.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Enterprise Linux Desktop | =7.0 | |
Red Hat Enterprise Linux Server | =7.0 | |
Red Hat Enterprise Linux Server | =7.4 | |
Red Hat Enterprise Linux Server | =7.4 | |
Red Hat Enterprise Linux Server | =7.5 | |
Redhat Enterprise Linux Workstation | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15097 has a high severity rating due to the potential for privilege escalation.
To fix CVE-2017-15097, apply the latest security patches provided by Red Hat for the affected versions.
CVE-2017-15097 affects Red Hat Enterprise Linux Desktop 7.0, Red Hat Enterprise Linux Server 7.0, and other specified versions.
CVE-2017-15097 is a privilege escalation vulnerability that allows an attacker to gain root access.
An attacker with access to the postgres user account can exploit CVE-2017-15097 to escalate privileges.