CVE-2021-36983

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
30/07/2021
Last modified:
07/08/2021

Description

replay-sorcery-kms in Replay Sorcery 0.6.0 allows a local attacker to gain root privileges via a symlink attack on /tmp/replay-sorcery or /tmp/replay-sorcery/device.sock.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:replaysorcery_project:replaysorcery:0.6.0:*:*:*:*:*:*:*