CVE-2022-23132
published 2022-01-13CVE-2022-23132: During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder. In this case, Zabbix Proxy or…
PriorityP342high7.3CVSS 3.1
AVNACLPRNUINSUCLILAL
EPSS
0.80%
52.4th percentile
During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder. In this case, Zabbix Proxy or Server processes can bypass file read, write and execute permissions check on the file system level
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | zabbix | < zabbix 1:6.0.7+dfsg-2 (bookworm) | zabbix 1:6.0.7+dfsg-2 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| zabbix | zabbix | — | — |
| zabbix | zabbix | >= 0 < 1:5.0.44+dfsg-1+deb11u1 | 1:5.0.44+dfsg-1+deb11u1 |
| zabbix | zabbix | >= 0 < 1:6.0.7+dfsg-2 | 1:6.0.7+dfsg-2 |
| zabbix | zabbix | >= 0 < 1:6.0.7+dfsg-2 | 1:6.0.7+dfsg-2 |
| zabbix | zabbix | >= 0 < 1:6.0.7+dfsg-2 | 1:6.0.7+dfsg-2 |
| zabbix | zabbix | 4.0.0 – 4.0.36 | — |
| zabbix | zabbix | 5.0.0 – 5.0.18 | — |
| zabbix | zabbix | 5.4.0 – 5.4.8 | — |
CVSS provenance
nvdv3.17.3HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.3HIGH
vendor_debian3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2022-23132: zabbix - During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use t...
vendor_debian·2022·CVSS 3.3
CVE-2022-23132 [LOW] CVE-2022-23132: zabbix - During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use t...
During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder. In this case, Zabbix Proxy or Server processes can bypass file read, write and execute permissions check on the file system level
Scope: local
bookworm: resolved (fixed in 1:6.0.7+dfsg-2)
bullseye: resolved (fixed in 1:5.0.44+dfsg-1+deb11u1)
forky: resolved (fixed in 1:6.0.7+dfsg-2)
sid: resolved (fixed in 1:6.0.7+dfsg-2)
trixie: resolved (fixed in 1:6.0.7+dfsg-2)
GHSA
GHSA-qqcg-7f79-v65c: During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder
ghsa_unreviewed·2022-01-14
CVE-2022-23132 [HIGH] CWE-284 GHSA-qqcg-7f79-v65c: During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder
During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder. In this case, Zabbix Proxy or Server processes can bypass file read, write and execute permissions check on the file system level
OSV
CVE-2022-23132: During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder
osv·2022-01-13·CVSS 7.3
CVE-2022-23132 [HIGH] CVE-2022-23132: During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder
During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder. In this case, Zabbix Proxy or Server processes can bypass file read, write and execute permissions check on the file system level
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6SZYHXINBKCY42ITFSNCYE7KCSF33VRA/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VB6W556GVXOKUYTASTDGL3AI7S3SJHX7/https://support.zabbix.com/browse/ZBX-20341https://lists.debian.org/debian-lts-announce/2024/10/msg00000.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6SZYHXINBKCY42ITFSNCYE7KCSF33VRA/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VB6W556GVXOKUYTASTDGL3AI7S3SJHX7/https://support.zabbix.com/browse/ZBX-20341
2022-01-13
Published