An issue exists in GNU Hurd prior to 0.9 20210404-9. The use of an authentication protocol in the proc server is vulnerable to man-in-the-middle attacks, which can be exploited for local privilege escalation to get full root access.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gnu hurd |