CVE-2011-1496

Published: 18 April 2011

tmux 1.3 and 1.4 does not properly drop group privileges, which allows local users to gain utmp group privileges via a filename to the -S command-line option.

Priority

Medium

Status

Package Release Status
tmux
Launchpad, Ubuntu, Debian
Upstream
Released (1.4-6)
Ubuntu 14.04 ESM (Trusty Tahr) Not vulnerable
(1.4-8)