ZeroHour

CVE-2022-25326

CVSS 3.1
5.5 medium
EPSS
<1%p3
Published
()
Modified
Description

fscrypt through v0.3.2 creates a world-writable directory by default when setting up a filesystem, allowing unprivileged users to exhaust filesystem space. We recommend upgrading to fscrypt 0.3.3 or above and adjusting the permissions on existing fscrypt metadata directories where applicable.

Vendors
google
Products
fscrypt
Weakness
CWE-400
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.