← Back to CVE List

CVE-2021-25630

Published: 2021-02-23T16:15Z
Last Modified: 2024-11-21T05:55Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
"loolforkit" is a privileged program that is supposed to be run by a special, non-privileged "lool" user. Before doing anything else "loolforkit" checks, if it was invoked by the "lool" user, and refuses to run with privileges, if it's not the case. In the vulnerable version of "loolforkit" this check was wrong, so a normal user could start "loolforkit" and eventually get local root privileges. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt