mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.
References
Configurations
History
No history.
Information
Published : 2014-12-16 18:59
Updated : 2017-07-01 01:29
NVD link : CVE-2014-8583
Mitre link : CVE-2014-8583
CVE.ORG link : CVE-2014-8583
JSON object : View
Products Affected
modwsgi
- mod_wsgi
CWE
CWE-254
7PK - Security Features