coreutils is vulnerable to Link Following
82
High Risk
chmod skips its symlink guard when the mode comes from --reference, so recursive (-R) traversal follows those links. A local user who can write into a traversed subdirectory can plant symlinks that redirect the privileged permission change to files outside the intended tree, widening permissions on sensitive files and enabling local privilege escalation. The fix checks the symlink guard before selecting the mode so recursion does not follow symlinks.
You are affected if you are using a version that falls within the vulnerable range and you run chmod -R --reference over a tree that a local user can populate with symlinks.
coreutils is vulnerable to Link Following in versions 0.0.29 - 0.10.0.
Upgrade the coreutils library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.