Lucene search

K
osvGoogleOSV:RUSTSEC-2021-0101
HistoryMay 27, 2021 - 12:00 p.m.

Permissions bypass in pleaser

2021-05-2712:00:00
Google
osv.dev
11
permissions bypass
pleaser vulnerability
local attacker
full root privileges
umask normalization
software

EPSS

0

Percentile

5.1%

Failure to normalize the umask in pleaser before 0.4 allows a local attacker to gain full root privileges if they are allowed to execute at least one command.