[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2024-1936 --- python38

ID: oval:org.secpod.oval:def:1601906Date: (C)2024-06-06   (M)2024-06-10
Class: PATCHFamily: unix




An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.2, 3.11.8, 3.10.13, 3.9.18, and 3.8.18 and prior.The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances

Platform:
Amazon Linux AMI
Product:
python38
Reference:
ALAS-2024-1936
CVE-2023-6597
CVE    1
CVE-2023-6597

© SecPod Technologies