6.7
CVSSv3

CVE-2022-37704

Published: 16/04/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 0

Vulnerability Summary

Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zmanda amanda 3.5.1

Vendor Advisories

Debian Bug report logs - #1029829 amanda: CVE-2022-37704 CVE-2022-37705 Package: src:amanda; Maintainer for src:amanda is Jose M Calhariz <calhariz@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 28 Jan 2023 13:03:01 UTC Severity: grave Tags: security, upstream Found in version amanda/1 ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...

Github Repositories

Amanda 3.5.1 LPE

[Suggested description] Amanda 351 has a flaw that allows privilege escalation from the regular user backup to root The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure [Additional Information] Amanda is a well