peter bassill · operator
$ cve CVE-2016-5425 JSON

CVE-2016-5425 EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 3.8% (pctl 90)

Patch early

A public exploit exists.

Description

The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle Linux, and possibly other Linux distributions uses weak permissions for /usr/lib/tmpfiles.d/tomcat.conf, which allows local users to gain root privileges by leveraging membership in the tomcat group.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS3.78% — more likely to be exploited than 90% of all CVEs
WeaknessCWE-276
On CISA KEVno
Public exploityes
Published2016-10-13
Last modified2026-06-17

Affected (9)

VendorProduct
apachetomcat
oracleinstantis enterprisetrack
oraclelinux
redhatenterprise linux desktop
redhatenterprise linux server
redhatenterprise linux server aus
redhatenterprise linux server eus
redhatenterprise linux server tus
redhatenterprise linux workstation

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD