[ossec-list] Re: CVE-2015-3222 which allows for root escalation via syscheck

2015-06-11 Thread Naithan Weigh
Is just the agent, the server, or the agent and server vulnerable? On Thursday, June 11, 2015 at 2:52:36 PM UTC+2, SoulAuctioneer wrote: > > https://github.com/ossec/ossec-hids/releases/tag/2.8.2 > > Fix for CVE-2015-3222 which allows for root escalation via syscheck > > Affected versions: 2.7 -

[ossec-list] Re: CVE-2015-3222 which allows for root escalation via syscheck

2015-06-11 Thread SoulAuctioneer
They both can be vulnerable depending on whether or not you are running syscheck on the server. -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+u