In OpenBSD 6.6, local users can use the su -L option to achieve any login class (often excluding root) because there is a logic error in the main function in su/su.c.
References
Configurations
History
No history.
Information
Published : 2019-12-05 00:15
Updated : 2024-11-21 04:34
NVD link : CVE-2019-19519
Mitre link : CVE-2019-19519
CVE.ORG link : CVE-2019-19519
JSON object : View
Products Affected
openbsd
- openbsd
CWE
CWE-287
Improper Authentication