CVE-2019-16767
MEDIUMezmaster < 5.2.11 - Execution with Unnecessary Privileges
Title source: llmDescription
The admin sys mode is now conditional and dedicated for the special case. By default, since [email protected] no instance (container) is launched with advanced capabilities (not launched as root)
References (3)
Core 3
Core References
Third Party Advisory x_refsource_confirm
https://github.com/Inist-CNRS/ezmaster/security/advisories/GHSA-g654-5qjf-g6cx
Patch, Third Party Advisory x_refsource_misc
https://github.com/Inist-CNRS/ezmaster/pull/51
Third Party Advisory x_refsource_misc
https://github.com/Inist-CNRS/ezmaster/blob/master/CHANGELOG.md#ezmaster-5211
Scores
CVSS v3
6.6
EPSS
0.0081
EPSS Percentile
51.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:L/A:L
Details
CWE
CWE-250
Status
published
Products (1)
inist/ezmaster
< 5.2.11
Published
Nov 29, 2019
Tracked Since
Feb 18, 2026