Security Advisory

CVE-2013-0296

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-04-27 21:00:00
Last updated 2024-08-06 14:18:09
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file's permissions to match those of the original file, which might allow local users to bypass intended access permissions while compression is occurring.