The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Linux_kernel |
Linux |
* |
* |
References