High severity7.8NVD Advisory· Published Oct 24, 2018· Updated Jun 17, 2026
CVE-2016-10729
CVE-2016-10729
Description
An issue was discovered in Amanda 3.3.1. A user with backup privileges can trivially compromise a client installation. The "runtar" setuid root binary does not check for additional arguments supplied after --create, allowing users to manipulate commands and perform command injection as root.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- osv-coords2 versionspkg:rpm/suse/amanda&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4pkg:rpm/suse/amanda&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2011%20SP4
< 2.5.2.1-188.5.1+ 1 more
- (no CPE)range: < 2.5.2.1-188.5.1
- (no CPE)range: < 2.5.2.1-188.5.1
Patches
Vulnerability mechanics
References
1- www.exploit-db.com/exploits/39217/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.