base/logging.c in Nagios Core before 4.2.4 allows local users with access to an account in the nagios group to gain root privileges via a symlink attack on the log file. NOTE: this can be leveraged by remote attackers using CVE-2016-9565.
{ "versions": [ { "introduced": "0" }, { "last_affected": "4.2.3" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-9566.json"