vendor:
pppd Daemon
by:
Sebastian Krahmer
7.2
CVSS
HIGH
Race Condition Error
362
CWE
Product Name: pppd Daemon
Affected Version From: OpenBSD 3.0
Affected Version To: OpenBSD 3.1
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: AnyBSD
2002
Race Condition Error in pppd Daemon
A race condition error in the code of some versions of the pppd daemon included with multiple BSD distributions may result in the pppd process changing the file permissions on an arbitrary system file. The vulnerability has been reported in OpenBSD versions 3.0 and 3.1, and earlier versions of OpenBSD may share this vulnerability.
Mitigation:
Ensure that the pppd daemon is up to date and running the latest version.