Beveiligingsadvies

CVE-2017-20147

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-09-20 17:00:51
Laatst bijgewerkt 2025-05-29 13:35:58
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

In the ebuild package through smokeping-2.7.3-r1 for SmokePing on Gentoo, the initscript uses a PID file that is writable by the smokeping user. By writing arbitrary PIDs to that file, the smokeping user can cause a denial of service to arbitrary PIDs when the service is stopped.