Security Advisory
CVE-2022-37704
6.7
MEDIUM
Vulnerability Description
Amanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /usr/sbin/dump as root with controlled arguments from the attacker which may lead to escalation of privileges, denial of service, and information disclosure.
Published Date
April 16, 2023
Official Source
NIST NVD Advisory