Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the ownership of arbitrary files via vectors related to the creation of backup files.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-04-16 12:30
Updated : 2010-06-06 21:00
NVD link : CVE-2010-1161
Mitre link : CVE-2010-1161
JSON object : View
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Products Affected
gnu
- nano