In GUI mode, deepin-clone before 1.1.3 creates a log file at the fixed path /tmp/.deepin-clone.log as root, and follows symlinks there. An unprivileged user can prepare a symlink attack there to create or overwrite files in arbitrary file system locations. The content is not attacker controlled.
2019-07-04T12:15:10.533
2024-11-21T04:24:29.557
Modified
CVSSv3.0: 5.5 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:C/A:C
3.9
9.2
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | deepin | deepin-clone | < 1.1.3 | Yes |