Language:
Severity: Medium
ID: 50795
File Name: centos_RHSA-2010-0787.nasl
Version: 1.15
Type: local
Agent: unix
Family: CentOS Local Security Checks
Published: 11/24/2010
Updated: 1/4/2021
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Agentless Assessment, Continuous Assessment, Nessus
Risk Factor: High
Score: 7.4
Risk Factor: Medium
Base Score: 6.9
Temporal Score: 5.7
Vector: CVSS2#AV:L/AC:M/Au:N/C:C/I:C/A:C
CPE: p-cpe:/a:centos:centos:glibc, p-cpe:/a:centos:centos:glibc-headers, p-cpe:/a:centos:centos:glibc-devel, p-cpe:/a:centos:centos:glibc-utils, cpe:/o:centos:centos:5, p-cpe:/a:centos:centos:nscd, p-cpe:/a:centos:centos:glibc-common
Required KB Items: Host/local_checks_enabled, Host/CentOS/release, Host/CentOS/rpm-list
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 10/21/2010
Vulnerability Publication Date: 1/7/2011
CANVAS (CANVAS)
Core Impact
Metasploit (glibc "$ORIGIN" Expansion Privilege Escalation)
CVE: CVE-2010-3847
BID: 44154
RHSA: 2010:0787