CVE-2019-15900
Last modified
CVE-2019-15900 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. On platforms without strtonum(3), sscanf was used without checking for error cases. EPSS estimates a 2.11% chance of exploitation in the next 30 days.
Description
An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. On platforms without strtonum(3), sscanf was used without checking for error cases. Instead, the uninitialized variable errstr was checked and in some cases returned success even if sscanf failed. The result was that, instead of reporting that the supplied username or group name did not exist, it would execute the command as root.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Doas Project | Doas | < 6.2 |
References
- https://github.com/slicer69/doas/compare/6.1p1...6.2Release Notes
- https://github.com/slicer69/doas/compare/6.1p1...6.2Release Notes
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-15900?
How severe is CVE-2019-15900?
How do I fix CVE-2019-15900?
Are you affected by CVE-2019-15900?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
