← Back to CVE List

CVE-2011-2910

Published: 2019-11-15T17:15Z
Last Modified: 2024-11-21T01:29Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping privileges but if the call fails the daemon would continue to run with root privileges which can allow possible privilege escalation. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt