A permission issue in the Cohesity Linux agent may allow privilege escalation in version 6.5.1b to 6.5.1d-hotfix10, 6.6.0a to 6.6.0b-hotfix1. An underprivileged linux user, if certain environment criteria are met, can gain additional privileges.
During installation, installed file permissions are set to allow anyone to modify those files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linux_agent | Cohesity | 6.5.1b (including) | 6.5.1d (including) |
Linux_agent | Cohesity | 6.6.0a (including) | 6.6.0b (including) |
Linux_agent | Cohesity | 6.5.1d-hotfix10 (including) | 6.5.1d-hotfix10 (including) |
Linux_agent | Cohesity | 6.6.0b-hotfix1 (including) | 6.6.0b-hotfix1 (including) |