Security Advisory

CVE-2013-0296

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-04-27 21:00:00
Last updated 2024-08-06 14:18:09
Assigner redhat
State PUBLISHED

Description

Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that files permissions to match those of the original file, which might allow local users to bypass intended access permissions while compression is occurring.