CVE-2013-6889 Information

Description

GNU Rush 1.7 does not properly drop privileges which allows local users to read arbitrary files via the –lint option.

Reference

http://git.gnu.org.ua/gitweb?p=rush.git;a=commit;h=00bdccd429517f12dbf37ab4397ddec3e51a2738 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=733505

Share on: