Security Advisory

CVE-2021-44512

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-12-07 02:07:50
Last updated 2024-08-04 04:25:16
Assigner mitre
State PUBLISHED

Description

World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.