Vulnerabilities > GNU > Coreutils > Low

DATE CVE VULNERABILITY TITLE RISK
2018-01-04 CVE-2017-18018 Race Condition vulnerability in GNU Coreutils
In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does not prevent replacement of a plain file with a symlink during use of the POSIX "-R -L" options, which allows local users to modify the ownership of arbitrary files by leveraging a race condition.
local
gnu CWE-362
1.9
2017-09-20 CVE-2015-1865 Race Condition vulnerability in GNU Coreutils 8.4
fts.c in coreutils 8.4 allows local users to delete arbitrary files.
local
gnu CWE-362
3.3
2005-05-02 CVE-2005-1039 Local Race Condition vulnerability in GNU Coreutils 5.2.1
Race condition in Core Utilities (coreutils) 5.2.1, when (1) mkdir, (2) mknod, or (3) mkfifo is running with the -m switch, allows local users to modify permissions of other files.
local
high complexity
gnu
3.7