In the ebuild package through logcheck-1.3.23.ebuild for Logcheck on Gentoo, it is possible to achieve root privilege escalation from the logcheck user because of insecure recursive chown calls.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Logcheck | Debian | * | 1.3.23 (including) |
Logcheck | Ubuntu | bionic | * |
Logcheck | Ubuntu | kinetic | * |
Logcheck | Ubuntu | lunar | * |
Logcheck | Ubuntu | mantic | * |
Logcheck | Ubuntu | trusty | * |
Logcheck | Ubuntu | xenial | * |