CVE-2017-1000455
—CVSS 3.0
5.5 medium
EPSS
<1%p8
Published
()
Modified
Description
GuixSD prior to Git commit 5e66574a128937e7f2fcf146d146225703ccfd5d used POSIX hard links incorrectly, leading the creation of setuid executables in "the store", violating a fundamental security assumption of GNU Guix.
- Vendors
- gnu
- Products
- guixsd
- Weakness
- CWE-346
- Vector
- CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
In the news0 stories
No ingested article mentions this CVE yet.