[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2023-2024-617 --- python3.11

ID: oval:org.secpod.oval:def:19500700Date: (C)2024-05-22   (M)2024-06-10
Class: PATCHFamily: unix




An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.2, 3.11.8, 3.10.13, 3.9.18, and 3.8.18 and prior.The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances

Platform:
Amazon Linux 2023
Product:
python3.11
Reference:
ALAS2023-2024-617
CVE-2023-6597
CVE    1
CVE-2023-6597

© SecPod Technologies