Possible race condition vulnerability in Apache Doris.
Some of code using `chmod()` method. This method run the risk of someone renaming the file out from under user and chmodding the wrong file.
This could theoretically happen, but the impact would be minimal.
This issue affects Apache Doris: before 1.2.8, before 2.0.4.
Users are recommended to upgrade to version 2.0.4, which fixes the issue.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2024-03-21T09:38:19.368Z
Updated: 2024-08-02T00:07:19.425Z
Reserved: 2024-02-17T01:50:01.548Z
Link: CVE-2024-26307
Vulnrichment
Updated: 2024-05-01T19:23:37.046Z
NVD
Status : Awaiting Analysis
Published: 2024-03-21T10:15:07.527
Modified: 2024-07-03T01:49:37.557
Link: CVE-2024-26307
Redhat
No data.