First published: Mon Oct 14 2019(Updated: )
An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the PatrolAgent SUID binary could allow an attacker with "patrol" privileges to elevate his/her privileges to the ones of the "root" user by specially crafting a shared library .so file that will be loaded during execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bmc Patrol Agent | =9.0.10i | |
Linux Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-17044 is a vulnerability in BMC Patrol Agent 9.0.10i that allows an attacker with "patrol" privileges to elevate their privileges to the root user.
CVE-2019-17044 has a severity score of 7.8 out of 10.
CVE-2019-17044 affects BMC Patrol Agent version 9.0.10i.
No, Linux kernel is not vulnerable to CVE-2019-17044.
To fix CVE-2019-17044, users of BMC Patrol Agent need to apply the security patch provided by BMC.