CVE-2019-3688
published 2019-10-07CVE-2019-3688: The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server 15 before and including version 4.8-5.8.1 and in SUSE Linux Enterprise Server…
PriorityP430high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
EPSS
0.34%
25.9th percentile
The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server 15 before and including version 4.8-5.8.1 and in SUSE Linux Enterprise Server 12 before and including 3.5.21-26.17.1 had squid:root, 0750 permissions. This allowed an attacker that compromissed the squid user to gain persistence by changing the binary
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | squid | — | — |
| suse | suse_linux_enterprise_server | — | — |
| suse | suse_linux_enterprise_server | — | — |
| suse | suse_linux_enterprise_server_12 | squid – 3.5.21-26.17.1 | — |
| suse | suse_linux_enterprise_server_15 | squid – 4.8-5.8.1 | — |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
nvdv2.06.6MEDIUMAV:L/AC:L/Au:N/C:N/I:C/A:C
vendor_debian5.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2019-3688: squid - The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server ...
vendor_debian·2019·CVSS 5.1
CVE-2019-3688 [MEDIUM] CVE-2019-3688: squid - The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server ...
The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server 15 before and including version 4.8-5.8.1 and in SUSE Linux Enterprise Server 12 before and including 3.5.21-26.17.1 had squid:root, 0750 permissions. This allowed an attacker that compromissed the squid user to gain persistence by changing the binary
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
GHSA-mx4x-652m-w4fw: The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server 15 before and including version 4
ghsa_unreviewed·2022-05-24
CVE-2019-3688 [MEDIUM] GHSA-mx4x-652m-w4fw: The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server 15 before and including version 4
The /usr/sbin/pinger binary packaged with squid in SUSE Linux Enterprise Server 15 before and including version 4.8-5.8.1 and in SUSE Linux Enterprise Server 12 before and including 3.5.21-26.17.1 had squid:root, 0750 permissions. This allowed an attacker that compromissed the squid user to gain persistence by changing the binary
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00053.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-11/msg00056.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-12/msg00024.htmlhttps://bugzilla.suse.com/show_bug.cgi?id=1093414http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00053.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-11/msg00056.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-12/msg00024.htmlhttps://bugzilla.suse.com/show_bug.cgi?id=1093414
2019-10-07
Published