Logo
vulnerabilityCVE-2023-28339
Name
CVE-2023-28339
Source
NVD ( link)Debian ( link)
Description
OpenDoas through 6.8.2, when TIOCSTI is available, allows privilege escalation because of sharing a terminal with the original session. NOTE: TIOCSTI is unavailable in OpenBSD 6.0 and later, and can be made unavailable in the Linux kernel 6.2 and later.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
opendoas
Exploitable

Vulnerability Ratings#


8.8
CVSSv31
8.8
CVSSv31
NaN
other