CVE-2012-2653

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/07/2012
Last modified:
11/04/2025

Description

arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities in the daemon.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lawrence_berkeley_national_laboratory:arpwatch:2.1a15:*:*:*:*:*:*:*