CVE-2021-23239

CVE-2021-23239

The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existence tests by winning a sudo_edit.c race condition in replacing a user-controlled directory by a symlink to an arbitrary path.

Source: CVE-2021-23239

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다