CVE Vulnerabilities

CVE-2024-30187

Improper Preservation of Permissions

Published: Mar 25, 2024 | Modified: Aug 22, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Anope before 2.0.15 does not prevent resetting the password of a suspended account.

Weakness

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

Affected Software

Name Vendor Start Version End Version
Anope Ubuntu devel *
Anope Ubuntu esm-apps/bionic *
Anope Ubuntu esm-apps/xenial *
Anope Ubuntu focal *
Anope Ubuntu jammy *
Anope Ubuntu mantic *
Anope Ubuntu noble *
Anope Ubuntu upstream *

References