Description
Priam uses File.createTempFile, which gives the permissions on that file -rw-r--r--. An attacker with read access to the local filesystem can read anything written there by the Priam process.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0650 | Priam uses File.createTempFile, which gives the permissions on that file -rw-r--r--. An attacker with read access to the local filesystem can read anything written there by the Priam process. |
Github GHSA |
GHSA-f4jh-ww96-9h9j | Netflix/Priam: Temporary Directory Information Disclosure |
References
History
No history.
Status: PUBLISHED
Assigner: netflix
Published:
Updated: 2024-08-03T21:33:17.494Z
Reserved: 2021-03-09T00:00:00.000Z
Link: CVE-2021-28100
No data.
Status : Modified
Published: 2021-03-23T21:15:13.650
Modified: 2024-11-21T05:59:05.557
Link: CVE-2021-28100
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA