CVE-2011-4356
Celery 2.1 and 2.2 before 2.2.8, 2.3 before 2.3.4, and 2.4 before 2.4.4 changes the effective id but not the real id during processing of the --uid and --gid arguments to celerybeat, celeryd_detach, celeryd-multi, and celeryev, which allows local users…
Does this matter?
Lower severity and a low EPSS score (0.33%). Track it; it rarely justifies an emergency change on its own.
Description
Celery 2.1 and 2.2 before 2.2.8, 2.3 before 2.3.4, and 2.4 before 2.4.4 changes the effective id but not the real id during processing of the --uid and --gid arguments to celerybeat, celeryd_detach, celeryd-multi, and celeryev, which allows local users to gain privileges via vectors involving crafted code that is executed by the worker process.
- CVSS 2.0
- 6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 0.33% probability · 26th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- celeryproject/celery
- Source
- secalert@redhat.com
References
- http://secunia.com/advisories/46973
- http://www.securityfocus.com/bid/50825
- https://github.com/ask/celery/blob/master/docs/sec/CELERYSA-0001.txtPatch
- https://github.com/ask/celery/pull/544
- http://secunia.com/advisories/46973
- http://www.securityfocus.com/bid/50825
- https://github.com/ask/celery/blob/master/docs/sec/CELERYSA-0001.txtPatch
- https://github.com/ask/celery/pull/544
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.