8.1
CVSSv3

CVE-2017-7572

Published: 06/04/2017 Updated: 12/04/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The _checkPolkitPrivilege function in serviceHelper.py in Back In Time (aka backintime) 1.1.18 and previous versions uses a deprecated polkit authorization method (unix-process) that is subject to a race condition (time of check, time of use). With this authorization method, the owner of a process requesting a polkit operation is checked by polkitd via /proc/<pid>/status, by which time the requesting process may have been replaced by a different process with the same PID that has different privileges then the original requester.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

backintime project backintime

Vendor Advisories

Debian Bug report logs - #859815 CVE-2017-7572 Package: src:backintime; Maintainer for src:backintime is Jonathan Wiltshire &lt;jmw@debianorg&gt;; Reported by: Moritz Muehlenhoff &lt;jmm@debianorg&gt; Date: Fri, 7 Apr 2017 16:21:01 UTC Severity: important Tags: fixed-upstream, security Found in version backintime/1112-1 Fi ...