Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2013-4215

Published: 5 May 2014

The IPXPING_COMMAND in contrib/check_ipxping.c in Nagios Plugins 1.4.16 allows local users to gain privileges via a symlink attack on /tmp/ipxping/ipxping.

Notes

AuthorNote
mdeslaur
we don't ship the check_ipxping script from the contrib/
directory in binary packages

Priority

Medium

Status

Package Release Status
nagios-plugins
Launchpad, Ubuntu, Debian
lucid Ignored
(end of life)
precise Not vulnerable
(code not shipped)
quantal Not vulnerable
(code not shipped)
raring Not vulnerable
(code not shipped)
upstream Needs triage