RSS   Vulnerabilities for 'Trousers'   RSS

2020-08-13
 
CVE-2020-24332

CWE-59
 

 
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the creation of the system.data file is prone to symlink attacks. The tss user can be used to create or corrupt existing files, which could possibly lead to a DoS attack.

 

 >>> Vendor: Trustedcomputinggroup 2 Products
Trusted platform module
Trousers


Copyright 2024, cxsecurity.com

 

Back to Top