CVE-2014-0476 describes a local privilege escalation vulnerability in chkrootkit versions prior to 0.50, affecting Canonical Ubuntu Linux and chkrootkit itself. This flaw, stemming from improper quoting of file paths in the 'slapper' function, allows local users to execute arbitrary code via a Trojan horse executable, provided the /tmp directory is not mounted with the noexec option. With a CVSS score of 3.7 (AV:L/AC:H/Au:N/C:P/I:P/A:P), this vulnerability requires high attack complexity but can lead to partial confidentiality, integrity, and availability compromise. While not listed in CISA's KEV catalog, exploit modules are available in Metasploit and ExploitDB, and it has garnered some community discussion, indicating awareness and potential for exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.49CPE matchmatch criteria | cpe:2.3:a:chkrootkit:chkrootkit:*:*:*:*:*:*:*:* | ||
10.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:10.04:*:lts:*:*:*:*:* | ||
12.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:12.04:*:lts:*:*:*:*:* | ||
13.10CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:* | ||
14.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:H/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.