High severity7.8NVD Advisory· Published Aug 13, 2020· Updated Jun 17, 2026
CVE-2020-24331
CVE-2020-24331
Description
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the tss user still has read and write access to the /etc/tcsd.conf file (which contains various settings related to this daemon).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- TrouSerS/TrouSerSdescription
- osv-coords3 versions
< 0.3.15-1.el8+ 2 more
- (no CPE)range: < 0.3.15-1.el8
- (no CPE)range: < 0.3.15-1.el8
- (no CPE)range: < 0.3.15-1.el8
Patches
Vulnerability mechanics
References
5- seclists.org/oss-sec/2020/q2/att-135/tcsd_fixes.patchnvdMailing ListPatchThird Party Advisory
- www.openwall.com/lists/oss-security/2020/08/14/1nvdExploitMailing ListThird Party Advisory
- bugzilla.suse.com/show_bug.cginvdExploitIssue TrackingThird Party Advisory
- sourceforge.net/p/trousers/mailman/message/37015817/nvdExploitMailing ListThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SSDL7COIFCZQMUBNAASNMKMX7W5JUHRD/nvd
News mentions
0No linked articles in our index yet.