CVE-2019-17365

Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the user-profile directories is world writable.
References
Configurations

Configuration 1

cpe:2.3:o:nixos:nix:*:*:*:*:*:*:*:*

Information

Published : 2019-10-09 10:15

Updated : 2019-10-23 02:12


NVD link : CVE-2019-17365

Mitre link : CVE-2019-17365

Products Affected
No products.
CWE
CWE-276

Incorrect Default Permissions