Page 1 of 1

Beware of Nginx-Exploit-Deb-Root-PrivEsc-CVE-2016-1247

Posted: Wed Nov 16, 2016 8:33 pm
by dpeca
Details - http://legalhackers.com/advisories/Ngin ... -1247.html

It's root privilege escalation.

Debian fixed it on 25. October.
Fixed in 1.6.2-5+deb8u3 package on Debian, and
1.10.0-0ubuntu0.16.04.3 on Ubuntu 16.04 LTS

Please update your servers!

Re: Beware of Nginx-Exploit-Deb-Root-PrivEsc-CVE-2016-1247

Posted: Thu Nov 17, 2016 6:58 am
by mehargags
Thanks for the Heads-Up Dpeca

Re: Beware of Nginx-Exploit-Deb-Root-PrivEsc-CVE-2016-1247

Posted: Wed Dec 07, 2016 1:52 pm
by skurudo
Thanks,
sticky topic for 90 days.