An issue was discovered in Cloud Foundry Foundation BOSH Release 261.x versions prior to 261.3 and all 260.x versions. In certain cases an authenticated Director user can provide a malicious checksum that could allow them to escalate their privileges on the Director VM, aka "BOSH Director Shell Injection Vulnerabilities."
References
Link | Resource |
---|---|
https://www.cloudfoundry.org/cve-2017-4961/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2017-06-13T06:00:00
Updated: 2017-06-13T05:57:01
Reserved: 2016-12-29T00:00:00
Link: CVE-2017-4961
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-06-13T06:29:00.393
Modified: 2019-10-03T00:03:26.223
Link: CVE-2017-4961
JSON object: View
Redhat Information
No data.
CWE