V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2024-28085
ANC
HighConfirmedExploit available

wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals …

CVSS
8.4
High
EPSS
0.02
p80
Published
2024-01-01
Updated
2024-01-01
Description

wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover.

Tags · CWE
CWE-150
CWE-268
CAPEC-41
CAPEC-81
CAPEC-93
CAPEC-134
Affected products
Debian_linux
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Timeline
2024-01-01
Published
2024-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: L
Local (L)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: L
Low (L)
User Interaction
UI: N
None (N)
Scope
S: C
Changed (C)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: N
None (N)
Exploit indicators
EPSS
0.022 · p80
Known exploited (KEV)
No
Known exploits — Сканер-ВС
CVE-2024-28085
github-poc · https://github.com/skyler-ferrante/CVE-2024-28085
Enterprise
Affected products
ProductVendorStatus
Tracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
util-linuxTracked
debian_linux*Tracked
util-linux*Tracked
Source databases
ANC
AST
DEB
CVE
UBU
Related vulnerabilities