CVE-2017-9232
Published May 28, 2017
Last updated 5 years ago
Overview
- Description
- Juju before 1.25.12, 2.0.x before 2.0.4, and 2.1.x before 2.1.3 uses a UNIX domain socket without setting appropriate permissions, allowing privilege escalation by users on the system to root.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-862
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:canonical:juju:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C5BE220-6F58-4812-AFE3-8D9793A028C7", "versionEndIncluding": "1.25.12" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A30AAA0-79D7-43EE-9000-E29D239C1423" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:alpha1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3613737-D975-4218-8D2D-9C5F30A095D1" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:alpha2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68BF4E5A-F8D9-4597-8920-5D8DB5C72DD7" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0496CF96-517D-4A42-9393-09D926225CF1" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA0DAA36-CE44-4615-AAF5-3DAF3C032C5C" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9B63B060-8DBF-4FC8-86C4-E2B92F83EEC2" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0CCD5D2-9A6C-47D0-A6CA-33CE5A8130DF" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C66EE5F7-A693-4F40-8CE5-319F107F9D0A" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B840808-BB6D-4BD9-9C05-553CC2222529" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55F73215-B61E-46C0-A599-6BA11D047F12" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta16:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7078C20-1D6C-4DE9-A87F-16724AD9D22D" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta17:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4491F701-66AC-40FC-9F6D-7F0DD91F298E" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta18:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "702884F5-D423-4858-AFED-DB3D039FEAD3" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4C983D9C-0513-426C-B229-2436C5F59608" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C76E9506-8AD7-4ED3-9BEF-7161F4A4E552" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2763A2A8-8513-4DF1-B8BA-067E108F4C65" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B397B007-DB41-4A83-BDF1-5B8B9C4CB3E9" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5363F3FA-92F7-4338-ACA4-F618009B64ED" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E321CBD7-2A89-4AC2-929E-3E998C5C2750" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21765F6B-9EA8-4829-A055-8116E66CF05E" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:beta9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FEA1FDE5-1774-43F3-822D-D7103108C6AA" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "647A7889-D988-44F2-8ECD-8D33D7EEAE9A" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11D7D143-38AA-4E15-9713-0D7964331E2D" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.0:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D17D297F-6B0D-463A-ABB9-4AF1A9E35C79" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DF58D367-DC9A-4F83-AF4E-9127BF59833A" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "31B341AD-40F8-438B-94E2-638E9AED6759" }, { "criteria": "cpe:2.3:a:canonical:juju:2.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "627F7445-CCEE-4839-BDBB-B65942485DFF" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A801D43-DF2A-4708-8F62-05BF8D6E6E83" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E6B28B60-ECE2-4580-91C3-A45C01E6826D" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C90BD36D-F23C-4A6A-A6BE-70C662462F12" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6CB9B0F1-9164-4256-96FB-23226A97F03A" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "472C690A-FD1E-4799-BCA5-844FD48D40C2" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:beta5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "161DE2C5-FB64-4761-AEC5-2AAE3330497F" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9BB6B17-6554-42CF-9D8A-DCAD0DB8E932" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3CBB12D-4222-464B-AB93-1EE721A4A08E" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1D6E57E-7903-41C1-B492-E496C6E269DE" }, { "criteria": "cpe:2.3:a:canonical:juju:2.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D416EFEF-81D6-4851-B297-6C8DACDBA60C" } ], "operator": "OR" } ] } ]