Description
In the Zstandard command-line utility prior to v1.4.1, output files were created with default permissions. Correct file permissions (matching the input) would only be set at completion time. Output files could therefore be readable or writable to unintended parties.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-10951 | In the Zstandard command-line utility prior to v1.4.1, output files were created with default permissions. Correct file permissions (matching the input) would only be set at completion time. Output files could therefore be readable or writable to unintended parties. |
Ubuntu USN |
USN-4760-1 | libzstd vulnerabilities |
Ubuntu USN |
USN-5720-1 | Zstandard vulnerabilities |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: facebook
Published:
Updated: 2024-08-03T19:21:17.205Z
Reserved: 2021-01-13T00:00:00.000Z
Link: CVE-2021-24031
No data.
Status : Modified
Published: 2021-03-04T21:15:12.743
Modified: 2024-11-21T05:52:14.813
Link: CVE-2021-24031
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN