The daily mandb cleanup job in Man-db before 2.7.6.1-1 as packaged in Ubuntu and Debian allows local users with access to the man account to gain privileges via vectors involving insecure chown use.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://bugs.launchpad.net/ubuntu/+source/man-db/+bug/1482786 | issue tracking third party advisory |
http://packetstormsecurity.com/files/140759/Man-db-2.6.7.1-Privilege-Escalation.html | exploit vdb entry third party advisory |
http://www.halfdog.net/Security/2015/MandbSymlinkLocalRootPrivilegeEscalation/ | third party advisory exploit |
http://people.canonical.com/~ubuntu-security/cve/2015/CVE-2015-1336.html | third party advisory |
http://www.securityfocus.com/bid/79723 | vdb entry third party advisory |
https://security.gentoo.org/glsa/201707-12 | issue tracking vdb entry third party advisory vendor advisory |
http://www.openwall.com/lists/oss-security/2015/12/14/11 | mailing list vdb entry third party advisory |
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=840357 | issue tracking third party advisory |