CVE detail
CVE-2011-1784 — CVE-2011-1784
Published 2011-05-20 · Modified 2026-06-16 · Vendor keepalived · Product keepalived · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0037
EPSS probability
exploitation probability, 30d
30.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.pid, and (3) vrrp.pid files in /var/run/, which allows local users to kill arbitrary processes by writing a PID to one of these files.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References