https://security-tracker.debian.org/tracker/DSA-5805-1
A security vulnerability that can lead to local privilege escalation has been found in ’guix-daemon’. It affects multi-user setups in which ’guix-daemon’ runs locally. The attack consists in having an unprivileged user spawn a build process, for instance with `guix build`, that makes its build directory world-writable. The user then creates a hardlink to a root-owned file such as /etc/shadow in that build directory. If the user…
RIVAL a.st.5805.1 в наличии Цена: 2367.00 ₽ КУПИТЬ
https://security-tracker.debian.org/tracker/DSA-5669-1