FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-11-27 06:34:59 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
e37a0a7b-e1a7-11ea-9538-0c9d925bbbc0security/trousers -- several vulnerabilities

the TrouSerS project reports reports:

If the tcsd daemon is started with root privileges, it fails to drop the root gid after it is no longer needed.

If the tcsd daemon is started with root privileges, the tss user has read and write access to the /etc/tcsd.conf file.

If the tcsd daemon is started with root privileges, the creation of the system.data file is prone to symlink attacks.


Discovery 2020-05-20
Entry 2020-08-18
trousers
< 0.3.14_3

https://sourceforge.net/p/trousers/trousers/ci/e74dd1d96753b0538192143adf58d04fcd3b242b/
https://www.openwall.com/lists/oss-security/2020/05/20/3
CVE-2020-24330
CVE-2020-24331
CVE-2020-24332