CVE-2021-20197 Information
Jun 07, 2022
cve
Description
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar objcopy strip ranlib. When these utilities are run as a privileged user (presumably as part of a script updating binaries across different users) an unprivileged user can trick these utilities into getting ownership of arbitrary files through a symlink.
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
Reference
https://bugzilla.redhat.com/show_bug.cgi?id=1913743 https://sourceware.org/bugzilla/show_bug.cgi?id=26945 https://security.netapp.com/advisory/ntap-20210528-0009/
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
NONE
Base Severity
6.3
Share on: