Security Advisory

CVE-2023-29465

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-06 00:00:00
Last updated 2025-02-12 16:34:31
Assigner mitre
State PUBLISHED

Description

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).