Vulnerabilities (CVE)

Filtered by vendor Clusterlabs Subscribe
Filtered by product Libqb
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-12779 1 Clusterlabs 1 Libqb 2021-07-03 6.6 MEDIUM 7.1 HIGH
libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL.