VendorsOpenropentmpfilesall versions
Vulnerabilities

Openr C Opentmpfiles

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2017-18188
OpenRC opentmpfiles through 0.1.3, when the fs.protected_hardlinks sysctl is turned off, allows local users to obtain ownership of arbitrary files by creating a hard link inside a directory on which "chown -R" will be run.
Published 2018-02-14 · Modified
5.5EPSS 0.004
CVE-2017-18925
opentmpfiles through 0.3.1 allows local users to take ownership of arbitrary files because d entries are mishandled and allow a symlink attack.
Published 2020-10-26 · Modified
5.5EPSS 0.004