Cfingerd with ALLOW_EXECUTION enabled does not properly drop privileges when it executes a program on behalf of the user, allowing local users to gain root privileges.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Cfingerd |
Infodrom |
* |
1.4.0 (including) |
References