CVE-2021-44038

Related Vulnerabilities: CVE-2021-44038  

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

Description

The MITRE CVE dictionary describes this issue as:

An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.

Additional Information

  • Bugzilla 2025912: CVE-2021-44038 quagga: unsafe chown/chmod operations may lead to privileges escalation
  • CWE-287: Improper Authentication
  • FAQ: Frequently asked questions about CVE-2021-44038