Vulnerability Description
super-xray is the GUI alternative for vulnerability scanning tool xray. In 0.2-beta, a privilege escalation vulnerability was discovered. This caused inaccurate default xray permissions. Note: this vulnerability only affects Linux and Mac OS systems. Users should upgrade to super-xray 0.3-beta.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Super Xray Project | Super Xray | 0.2 |
| Apple | Macos | - |
| Linux | Linux Kernel | - |
Related Weaknesses (CWE)
References
- https://github.com/4ra1n/super-xray/releases/tag/0.3-betaRelease NotesThird Party Advisory
- https://github.com/4ra1n/super-xray/security/advisories/GHSA-2g28-xrw6-fq5fExploitThird Party Advisory
- https://github.com/4ra1n/super-xray/releases/tag/0.3-betaRelease NotesThird Party Advisory
- https://github.com/4ra1n/super-xray/security/advisories/GHSA-2g28-xrw6-fq5fExploitThird Party Advisory
FAQ
What is CVE-2022-41950?
CVE-2022-41950 is a vulnerability with a CVSS score of 6.4 (MEDIUM). super-xray is the GUI alternative for vulnerability scanning tool xray. In 0.2-beta, a privilege escalation vulnerability was discovered. This caused inaccurate default xray permissions. Note: this vu...
How severe is CVE-2022-41950?
CVE-2022-41950 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-41950?
Check the references section above for vendor advisories and patch information. Affected products include: Super Xray Project Super Xray, Apple Macos, Linux Linux Kernel.