Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26050
HistoryAug 06, 2020 - 6:08 a.m.

Insecure Permission Checks

2020-08-0606:08:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.0004 Low

EPSS

Percentile

12.6%

github.com/etcd-io/etcd does not properly perform permission checks. The function os.MkdirAll that creates the directory containing automatically generated self-signed certificates for TLS connections with clients is insecure and does not perform any permission checks, potentially overwriting existing folders.