First published: Wed Dec 12 2018(Updated: )
Privilege escalation vulnerability in McAfee Agent (MA) for Linux 5.0.0 through 5.0.6, 5.5.0, and 5.5.1 allows local users to perform arbitrary command execution via specific conditions.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Agent | >=5.0.0<=5.0.6 | |
Mcafee Agent | =5.5.0 | |
Mcafee Agent | =5.5.1 |
McAfee highly recommends that all customers upgrade to McAfee Agent 5.6.0.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6704 is a privilege escalation vulnerability in McAfee Agent (MA) for Linux version 5.0.0 through 5.0.6, 5.5.0, and 5.5.1.
CVE-2018-6704 allows local users to perform arbitrary command execution through specific conditions in McAfee Agent for Linux versions 5.0.0 through 5.0.6, 5.5.0, and 5.5.1.
CVE-2018-6704 has a severity rating of 7.8 (high).
To fix CVE-2018-6704, it is recommended to update McAfee Agent for Linux to a version that is not affected by the vulnerability.
You can find more information about CVE-2018-6704 on the McAfee support website at the following link: [McAfee Support](https://kc.mcafee.com/corporate/index?page=content&id=SB10259)