ZeroHour

CVE-2023-3899

CVSS 3.1
7.8 high
EPSS
<1%p19
Published
()
Modified
Description

A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization. The D-Bus interface com.redhat.RHSM1 exposes a significant number of methods to all users that could change the state of the registration. By using the com.redhat.RHSM1.Config.SetAll() method, a low-privileged local user could tamper with the state of the registration, by unregistering the system or by changing the current entitlements. This flaw allows an attacker to set arbitrary configuration directives for /etc/rhsm/rhsm.conf, which can be abused to cause a local privilege escalation to an unconfined root.

Vendors
redhatfedoraproject
Products
subscription-manager, fedora, enterprise linux, enterprise linux desktop, enterprise linux eus, enterprise linux for arm 64, enterprise linux for arm 64 eus, enterprise linux for ibm z systems, enterprise linux for ibm z systems eus, enterprise linux for power big endian, enterprise linux for power little endian, enterprise linux for power little endian eus
Weakness
CWE-285, CWE-863
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.