Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-0240
Description:The mod_wsgi module before 3.5 for Apache, when daemon mode is enabled, does not properly handle error codes returned by setuid when run on certain Linux kernels, which allows local users to gain privileges via vectors related to the number of running processes.
Test IDs: 1.3.6.1.4.1.25623.1.0.123387   1.3.6.1.4.1.25623.1.0.123327   1.3.6.1.4.1.25623.1.0.702937   1.3.6.1.4.1.25623.1.0.882016   1.3.6.1.4.1.25623.1.0.871230  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-0240
BugTraq ID: 67532
http://www.securityfocus.com/bid/67532
http://www.openwall.com/lists/oss-security/2014/05/21/1
RedHat Security Advisories: RHSA-2014:0789
http://rhn.redhat.com/errata/RHSA-2014-0789.html
http://secunia.com/advisories/59551
http://secunia.com/advisories/60094




© 1998-2025 E-Soft Inc. All rights reserved.