Ebuild in Gentoo may change directory and file permissions depending on the order of installed packages, which allows local users to read or write to restricted directories or execute restricted commands via navigating to the affected directories, or executing the affected commands.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://bugs.gentoo.org/show_bug.cgi?id=141619 | vendor advisory |
http://www.openwall.com/lists/oss-security/2017/01/28/7 | third party advisory mailing list |
https://bugs.gentoo.org/show_bug.cgi?id=58611 | vendor advisory |
https://bugs.gentoo.org/show_bug.cgi?id=607426 | vendor advisory |
https://bugs.gentoo.org/show_bug.cgi?id=396153 | vendor advisory |
https://bugs.gentoo.org/show_bug.cgi?id=607430 | vendor advisory |