Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32998
HistoryNov 17, 2021 - 10:36 p.m.

Symlink Attack

2021-11-1722:36:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
32
symlink attack
glib2
vulnerability
dangling symlink
empty file
security relevance
attacker-controlled

EPSS

0.013

Percentile

86.0%

glib2 is vulnerable to symlink attack. The vulnerability exists due to a dangling symlink which incorrectly creates the target of the symlink as an empty file, which have security relevance if the symlink is attacker-controlled.