This script is Copyright (C) 2004-2014 Tenable Network Security, Inc.
The remote Gentoo host is missing one or more security-related
The remote host is affected by the vulnerability described in GLSA-200408-11
(Nessus: 'adduser' race condition vulnerability)
A race condition can occur in 'nessus-adduser' if the user has not
configured their TMPDIR variable.
A malicious user could exploit this bug to escalate privileges to the
rights of the user running 'nessus-adduser'.
There is no known workaround at this time. All users are encouraged to
upgrade to the latest available version of Nessus.
See also :
All Nessus users should upgrade to the latest version:
# emerge sync
# emerge -pv '>=net-analyzer/nessus-2.0.12'
# emerge '>=net-analyzer/nessus-2.0.12'
Risk factor :
Low / CVSS Base Score : 3.7
Family: Gentoo Local Security Checks
Nessus Plugin ID: 14567 (gentoo_GLSA-200408-11.nasl)
CVE ID: CVE-2004-1445