CVE-2016-4444

CWE-77Command Injection8 documents6 sources
Severity
7.0HIGH
EPSS
0.1%
top 78.44%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 11
Latest updateMay 17

Description

The allow_execmod plugin for setroubleshoot before 3.2.23 allows local users to execute arbitrary commands by triggering an execmod SELinux denial with a crafted binary filename, related to the commands.getstatusoutput function.

CVSS vector

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Patches

🔴Vulnerability Details

2
GHSA
GHSA-wf5j-pjjj-c33c: The allow_execmod plugin for setroubleshoot before 32022-05-17
CVEList
CVE-2016-4444: The allow_execmod plugin for setroubleshoot before 32017-04-11

💥Exploits & PoCs

3
Exploit-DB
Astaro Security Gateway 7 - Remote Code Execution2017-09-13
Exploit-DB
Freefloat FTP Server 1.0 - 'SITE ZONE' Remote Buffer Overflow2016-11-04
Exploit-DB
Konica Minolta FTP Utility 1.00 - CWD Command Overflow (SEH)2016-01-11

📋Vendor Advisories

1
Red Hat
setroubleshoot-plugins: insecure commands.getstatusoutput use in the allow_execmod plugin2016-06-21

💬Community

1
Bugzilla
CVE-2016-4444 setroubleshoot-plugins: insecure commands.getstatusoutput use in the allow_execmod plugin2016-05-03