Icecast before 2.4.0 does not change the supplementary group privileges when <changeowner> is configured, which allows local users to gain privileges via unspecified vectors.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2014-12-10T15:00:00
Updated: 2014-12-10T13:57:01
Reserved: 2014-11-26T00:00:00
Link: CVE-2014-9091
JSON object: View
NVD Information
Status : Analyzed
Published: 2014-12-10T15:59:19.597
Modified: 2014-12-11T18:24:34.323
Link: CVE-2014-9091
JSON object: View
Redhat Information
No data.
CWE