Nagios 4.3.2 and earlier allows local users to gain root privileges via a hard link attack on the Nagios init script file, related to CVE-2016-8641.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/95171 | vdb entry third party advisory |
http://www.openwall.com/lists/oss-security/2016/12/30/6 | third party advisory mailing list |