Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

My OS is up to date, why I still get the CVE exposure report? #100

Open
GoliTech opened this issue Aug 9, 2023 · 4 comments
Open

My OS is up to date, why I still get the CVE exposure report? #100

GoliTech opened this issue Aug 9, 2023 · 4 comments

Comments

@GoliTech
Copy link

GoliTech commented Aug 9, 2023

After updating my OS I run the script again and it shows me some CVEs. Does this mean my OS is still vulnerable?

@bcoles
Copy link
Contributor

bcoles commented Aug 9, 2023

After updating my OS I run the script again and it shows me some CVEs. Does this mean my OS is still vulnerable?

Unlikely but impossible to say without seeing the output.

@GoliTech
Copy link
Author

GoliTech commented Aug 9, 2023

image

@bcoles

@GoliTech
Copy link
Author

GoliTech commented Aug 9, 2023

@bcoles I just scanned the official Ubuntu docker image

@bcoles
Copy link
Contributor

bcoles commented Aug 9, 2023

The match for nft_object UAF (CVE-2022-2586) does not set a maximum kernel version. This is likely a false positive.

Reqs: pkg=linux-kernel,ver>=3.16,CONFIG_USER_NS=y,sysctl:kernel.unprivileged_userns_clone==1

sudo Baron Samedit and sudo Baron Samedit 2 (CVE-2021-3156) exploit a vulnerability in sudo which was patched in 2021.

The match for both of these is a simple check for the sudo package version below 1.9.5p2. This is likely a false positive; however, you should check your version of sudo (apt version sudo / sudo --version).

Reqs: pkg=sudo,ver<1.9.5p2

Reqs: pkg=sudo,ver<1.9.5p2

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants