TROYANOSYVIRUS
Back to CVEs

CVE-2019-15900

CRITICAL
9.8

Description

An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. On platforms without strtonum(3), sscanf was used without checking for error cases. Instead, the uninitialized variable errstr was checked and in some cases returned success even if sscanf failed. The result was that, instead of reporting that the supplied username or group name did not exist, it would execute the command as root.

CVE Details

CVSS v3.1 Score9.8
SeverityCRITICAL
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published10/18/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

doas_project:doas

Weaknesses (CWE)

CWE-252CWE-754CWE-863CWE-908

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.