Security Advisory

CVE-2021-28100

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-23 20:26:01
Last updated 2024-08-03 21:33:17
Assigner netflix
State PUBLISHED

Description

Priam uses File.createTempFile, which gives the permissions on that file -rw-r--r--. An attacker with read access to the local filesystem can read anything written there by the Priam process.