CVE Vulnerabilities

CVE-2011-1784

Published: May 20, 2011 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.6 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.pid, and (3) vrrp.pid files in /var/run/, which allows local users to kill arbitrary processes by writing a PID to one of these files.

Affected Software

NameVendorStart VersionEnd Version
KeepalivedKeepalived*1.2.2 (including)
KeepalivedKeepalived0.2.1 (including)0.2.1 (including)
KeepalivedKeepalived0.2.3 (including)0.2.3 (including)
KeepalivedKeepalived0.2.6 (including)0.2.6 (including)
KeepalivedKeepalived0.2.7 (including)0.2.7 (including)
KeepalivedKeepalived0.3.5 (including)0.3.5 (including)
KeepalivedKeepalived0.3.6 (including)0.3.6 (including)
KeepalivedKeepalived0.3.7 (including)0.3.7 (including)
KeepalivedKeepalived0.3.8 (including)0.3.8 (including)
KeepalivedKeepalived0.4.8 (including)0.4.8 (including)
KeepalivedKeepalived0.4.9 (including)0.4.9 (including)
KeepalivedKeepalived0.4.9a (including)0.4.9a (including)
KeepalivedKeepalived0.5.3 (including)0.5.3 (including)
KeepalivedKeepalived0.5.5 (including)0.5.5 (including)
KeepalivedKeepalived0.5.6 (including)0.5.6 (including)
KeepalivedKeepalived0.5.7 (including)0.5.7 (including)
KeepalivedKeepalived0.5.8 (including)0.5.8 (including)
KeepalivedKeepalived0.5.9 (including)0.5.9 (including)
KeepalivedKeepalived0.6.1 (including)0.6.1 (including)
KeepalivedKeepalived0.6.2 (including)0.6.2 (including)
KeepalivedKeepalived0.6.3 (including)0.6.3 (including)
KeepalivedKeepalived0.6.4 (including)0.6.4 (including)
KeepalivedKeepalived0.6.5 (including)0.6.5 (including)
KeepalivedKeepalived0.6.6 (including)0.6.6 (including)
KeepalivedKeepalived0.6.7 (including)0.6.7 (including)
KeepalivedKeepalived0.6.8 (including)0.6.8 (including)
KeepalivedKeepalived0.6.9 (including)0.6.9 (including)
KeepalivedKeepalived0.6.10 (including)0.6.10 (including)
KeepalivedKeepalived0.7.1 (including)0.7.1 (including)
KeepalivedKeepalived0.7.6 (including)0.7.6 (including)
KeepalivedKeepalived1.0.0 (including)1.0.0 (including)
KeepalivedKeepalived1.0.1 (including)1.0.1 (including)
KeepalivedKeepalived1.0.2 (including)1.0.2 (including)
KeepalivedKeepalived1.0.3 (including)1.0.3 (including)
KeepalivedKeepalived1.1.0 (including)1.1.0 (including)
KeepalivedKeepalived1.1.1 (including)1.1.1 (including)
KeepalivedKeepalived1.1.2 (including)1.1.2 (including)
KeepalivedKeepalived1.1.3 (including)1.1.3 (including)
KeepalivedKeepalived1.1.4 (including)1.1.4 (including)
KeepalivedKeepalived1.1.5 (including)1.1.5 (including)
KeepalivedKeepalived1.1.6 (including)1.1.6 (including)
KeepalivedKeepalived1.1.7 (including)1.1.7 (including)
KeepalivedKeepalived1.1.8 (including)1.1.8 (including)
KeepalivedKeepalived1.1.9 (including)1.1.9 (including)
KeepalivedKeepalived1.1.10 (including)1.1.10 (including)
KeepalivedKeepalived1.1.11 (including)1.1.11 (including)
KeepalivedKeepalived1.1.12 (including)1.1.12 (including)
KeepalivedKeepalived1.1.13 (including)1.1.13 (including)
KeepalivedKeepalived1.1.14 (including)1.1.14 (including)
KeepalivedKeepalived1.1.15 (including)1.1.15 (including)
KeepalivedKeepalived1.1.16 (including)1.1.16 (including)
KeepalivedKeepalived1.1.17 (including)1.1.17 (including)
KeepalivedKeepalived1.1.18 (including)1.1.18 (including)
KeepalivedKeepalived1.1.19 (including)1.1.19 (including)
KeepalivedKeepalived1.1.20 (including)1.1.20 (including)
KeepalivedKeepalived1.2.0 (including)1.2.0 (including)
KeepalivedKeepalived1.2.1 (including)1.2.1 (including)
KeepalivedUbuntuartful*
KeepalivedUbuntudapper*
KeepalivedUbuntuhardy*
KeepalivedUbuntulucid*
KeepalivedUbuntumaverick*
KeepalivedUbuntunatty*
KeepalivedUbuntuoneiric*
KeepalivedUbuntuprecise*
KeepalivedUbuntuquantal*
KeepalivedUbunturaring*
KeepalivedUbuntusaucy*
KeepalivedUbuntuupstream*
KeepalivedUbuntuutopic*
KeepalivedUbuntuvivid*
KeepalivedUbuntuwily*
KeepalivedUbuntuyakkety*
KeepalivedUbuntuzesty*

References