Vulnerabilities (CVE)

Filtered by vendor Vserver Subscribe
Filtered by product Util-vserver
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-4418 1 Vserver 1 Util-vserver 2024-02-04 7.5 HIGH N/A
util-vserver before 0.30.208-1 with kernel-patch-vserver before 1.9.5.5 and 2.x before 2.3 for Debian GNU/Linux sets a default policy that trusts unknown capabilities, which could allow local users to conduct unauthorized activities.
CVE-2006-1656 1 Vserver 1 Util-vserver 2024-02-04 7.2 HIGH N/A
vserver in util-vserver 0.30.209 executes a command as root when the suexec userid parameter is invalid and non-numeric, which might cause local users to inadvertently execute dangerous commands as root.