vendor:
systemd
by:
user
3.3
CVSS
LOW
Setuid Binary Creation
264
CWE
Product Name: systemd
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Linux
2020
Setuid Binary Creation via DynamicUser in systemd
This bug report describes a bug in systemd that allows a service with DynamicUser in collaboration with another service or user to create a setuid binary that can be used to access its UID beyond the lifetime of the service.
Mitigation:
Care must be taken so that UID/GID recycling doesn't create security issues involving files created by the service.