CVE-2017-1000382

CVE-2017-1000382

VIM version 8.0.1187 (and other versions most likely) ignores umask when creating a swap file ("[ORIGINAL_FILENAME].swp") resulting in files that may be world readable or otherwise accessible in ways not intended by the user running the vi binary.

Source: CVE-2017-1000382

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다