CVE-2014-0484
acpi-support - security update
EPSS 0.04%
Description
The Debian acpi-support package before 0.140-5+deb7u3 allows local users to gain privileges via vectors related to the "user's environment."
How to fix CVE-2014-0484
To remediate CVE-2014-0484, upgrade the affected package to a fixed version below.
- Debian/acpi-support—upgrade to 0.142-4 or later
- Debian/acpi-support—upgrade to 0.137-5+deb6u2 or later
- Debian/acpi-support—upgrade to 0.140-5+deb7u3 or later
Is CVE-2014-0484 being exploited?
Low — EPSS is 0.0%, meaning exploitation activity has not been observed at scale.
Affected packages (3)
- from 0, < 0.142-4
- from 0, < 0.137-5+deb6u2
- from 0, < 0.140-5+deb7u3