UBUNTU-CVE-2023-41915
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-41915
UBUNTU-CVE-2023-41915
Summary:
Details: OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.
References: https://ubuntu.com/security/CVE-2023-41915, https://github.com/openpmix/openpmix/commit/da036933c2795c1f40d0835e15f17e204e4daf0f, https://github.com/openpmix/openpmix/commit/0bf9801a3017eb6ca411e158da39570ccb998c17, https://docs.openpmix.org/en/latest/security.html, https://github.com/openpmix/openpmix/releases/tag/v5.0.1, https://github.com/openpmix/openpmix/releases/tag/v4.2.6, https://ubuntu.com/security/notices/USN-6434-1, https://www.cve.org/CVERecord?id=CVE-2023-41915
Affected packages
Package
Name: pmix
Purl: pkg:deb/ubuntu/[email protected]~rc1-1ubuntu0.1~esm1?arch=source&distro=esm-apps/bionic
Affected ranges
Type: ECOSYSTEM
Events:
