CVE-2018-25078

Description

man-db before 2.8.5 on Gentoo allows local users (with access to the man user account) to gain root privileges because /usr/bin/mandb is executed by root but not owned by root. (Also, the owner can strip the setuid and setgid bits.)

References

ExploitVendor Advisory

CvssV3 impact

Could not find any metrics

CvssV2 impact

Could not find any metrics