Medium severity5.5NVD Advisory· Published Jun 23, 2020· Updated Jun 17, 2026
CVE-2020-14976
CVE-2020-14976
Description
GNS3 ubridge through 0.9.18 on macOS, as used in GNS3 server before 2.1.17, allows a local attacker to read arbitrary files because it handles configuration-file errors by printing the configuration file while executing in a setuid root context.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- GNS3/ubridgedescription
Patches
Vulnerability mechanics
References
4- github.com/GNS3/ubridge/commit/2eb0d1dab6a6de76cf3556130a2d52af101077dbnvdPatchThird Party Advisory
- theevilbit.github.io/posts/nvdExploitThird Party Advisory
- github.com/GNS3/gns3-server/releases/tag/v2.1.17nvdRelease NotesThird Party Advisory
- www.gns3.comnvdVendor Advisory
News mentions
0No linked articles in our index yet.