vendor:
Arkeia
by:
Brock Tellier
7.2
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Arkeia
Affected Version From: 4
Affected Version To: 4
Patch Exists: NO
Related CWE: N/A
CPE: a:knox_software:arkeia:4.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux x86
2000
Knox Software Arkeia 4.0 Backup rnavc & nlserverd HOME Environment Variable Buffer Overflow
A local buffer overflow in the handling of the HOME environment variable by the rlserver and rnavc binaries that are part of the Knox Software Arkiea backup application allow local users to obtain root access.
Mitigation:
Ensure that the HOME environment variable is not set to a value that is too long.