NA

CVE-2018-25078

Published: 26/01/2023 Updated: 08/10/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

man-db prior to 2.8.5 on Gentoo allows local users (with access to the man user account) to gain root privileges because /usr/bin/mandb is executed by root but not owned by root. (Also, the owner can strip the setuid and setgid bits.)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

man-db project man-db