Lucene search

K
osvGoogleOSV:USN-4844-1
HistoryMar 15, 2021 - 10:27 p.m.

cinnamon vulnerability

2021-03-1522:27:19
Google
osv.dev
6
cinnamon
symlink
vulnerability
matthias gerstner
root escalation
software.

AI Score

6.6

Confidence

Low

EPSS

0.003

Percentile

70.1%

Matthias Gerstner discovered that the cinnamon-settings-users utility in
Cinnamon did not safely handle symlinks. An unprivileged attacker could
potentially use this vulnerability to overwrite arbitrary files as root.

AI Score

6.6

Confidence

Low

EPSS

0.003

Percentile

70.1%