Vulnerability Description
In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does not prevent replacement of a plain file with a symlink during use of the POSIX "-R -L" options, which allows local users to modify the ownership of arbitrary files by leveraging a race condition.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gnu | Coreutils | <= 8.29 |
Related Weaknesses (CWE)
References
- http://lists.gnu.org/archive/html/coreutils/2017-12/msg00045.htmlExploitIssue TrackingThird Party Advisory
- http://lists.gnu.org/archive/html/coreutils/2017-12/msg00045.htmlExploitIssue TrackingThird Party Advisory
FAQ
What is CVE-2017-18018?
CVE-2017-18018 is a vulnerability with a CVSS score of 7.1 (HIGH). In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does not prevent replacement of a plain file with a symlink during use of the POSIX "-R -L" options, which allows local users to modify t...
How severe is CVE-2017-18018?
CVE-2017-18018 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-18018?
Check the references section above for vendor advisories and patch information. Affected products include: Gnu Coreutils.