The CGIwrap program before 3.9 on Debian GNU/Linux uses an incorrect minimum value of 100 for a UID to determine whether it can perform a seteuid operation, which could allow attackers to execute code as other system UIDs that are greater than the minimum value, which should be 1000 on Debian systems.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cgiwrap | Nathan_neulinger | 1.0 (including) | 1.0 (including) |
Cgiwrap | Nathan_neulinger | 2.0 (including) | 2.0 (including) |
Cgiwrap | Nathan_neulinger | 2.1 (including) | 2.1 (including) |
Cgiwrap | Nathan_neulinger | 2.2 (including) | 2.2 (including) |
Cgiwrap | Nathan_neulinger | 2.3 (including) | 2.3 (including) |
Cgiwrap | Nathan_neulinger | 2.4 (including) | 2.4 (including) |
Cgiwrap | Nathan_neulinger | 2.5 (including) | 2.5 (including) |
Cgiwrap | Nathan_neulinger | 2.6 (including) | 2.6 (including) |
Cgiwrap | Nathan_neulinger | 2.7 (including) | 2.7 (including) |
Cgiwrap | Nathan_neulinger | 3.0 (including) | 3.0 (including) |
Cgiwrap | Nathan_neulinger | 3.1 (including) | 3.1 (including) |
Cgiwrap | Nathan_neulinger | 3.2 (including) | 3.2 (including) |
Cgiwrap | Nathan_neulinger | 3.3 (including) | 3.3 (including) |
Cgiwrap | Nathan_neulinger | 3.4 (including) | 3.4 (including) |
Cgiwrap | Nathan_neulinger | 3.5 (including) | 3.5 (including) |
Cgiwrap | Nathan_neulinger | 3.6 (including) | 3.6 (including) |
Cgiwrap | Nathan_neulinger | 3.6.1 (including) | 3.6.1 (including) |
Cgiwrap | Nathan_neulinger | 3.6.2 (including) | 3.6.2 (including) |
Cgiwrap | Nathan_neulinger | 3.6.3 (including) | 3.6.3 (including) |
Cgiwrap | Nathan_neulinger | 3.6.4 (including) | 3.6.4 (including) |
Cgiwrap | Nathan_neulinger | 3.6.5 (including) | 3.6.5 (including) |
Cgiwrap | Nathan_neulinger | 3.7 (including) | 3.7 (including) |
Cgiwrap | Nathan_neulinger | 3.7.1 (including) | 3.7.1 (including) |
Cgiwrap | Nathan_neulinger | 3.8 (including) | 3.8 (including) |
Cgiwrap | Nathan_neulinger | 3.11 (including) | 3.11 (including) |
Cgiwrap | Nathan_neulinger | 3.21 (including) | 3.21 (including) |
Cgiwrap | Nathan_neulinger | 3.22 (including) | 3.22 (including) |
Cgiwrap | Nathan_neulinger | 3.23 (including) | 3.23 (including) |
Cgiwrap | Nathan_neulinger | 3.24 (including) | 3.24 (including) |
Cgiwrap | Ubuntu | dapper | * |
Cgiwrap | Ubuntu | devel | * |
Cgiwrap | Ubuntu | edgy | * |
Cgiwrap | Ubuntu | feisty | * |
Cgiwrap | Ubuntu | gutsy | * |