CVE-2020-14976

Published
View on NVD ↗
CVSS v3
5.5
MEDIUM
CVSS v2
4.9
MEDIUM
Affected
2
PROJECTS

Description

GNS3 ubridge through 0.9.18 on macOS, as used in GNS3 server before 2.1.17, allows a local attacker to read arbitrary files because it handles configuration-file errors by printing the configuration file while executing in a setuid root context.

Bridge for UDP tunnels, Ethernet, TAP and VMnet interfaces.
GitHubGitHub
144
GNS3 server
GitHubGitHub
1K