debian/sympa.postinst for the Debian Sympa package before 6.2.40~dfsg-7 uses mode 4755 for sympa_newaliases-wrapper, whereas the intended permissions are mode 4750 (for access by the sympa group)
References
Link | Resource |
---|---|
https://bugs.debian.org/971904 | Vendor Advisory |
https://salsa.debian.org/sympa-team/sympa/-/merge_requests/1 | Mailing List Vendor Advisory |
https://www.debian.org/security/2020/dsa-4818 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-10-10T17:57:23
Updated: 2020-12-24T11:06:08
Reserved: 2020-10-10T00:00:00
Link: CVE-2020-26932
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-10-10T18:15:12.760
Modified: 2022-11-08T13:54:48.017
Link: CVE-2020-26932
JSON object: View
Redhat Information
No data.
CWE