Privilege escalation in Ubuntu - CVE-2018-6557
Published: August 21, 2018 / Updated: August 23, 2018
Ubuntu
Detailed vulnerability description
The vulnerability allows a local attacker to gain elevated privileges on the target system.
The vulnerability exists in the MOTD update script due to improper processing of temporary files. A local attacker can supply specially crafted symbolic links (symlinks) from a temporary file to a critical file on the system to overwrite files with administrator privileges.