Vulnerabilities > Openrc Project

DATE CVE VULNERABILITY TITLE RISK
2021-10-14 CVE-2021-42341 Unspecified vulnerability in Openrc Project Openrc
checkpath in OpenRC before 0.44.7 uses the direct output of strlen() to allocate strings, which does not account for the '\0' byte at the end of the string.
network
low complexity
openrc-project
7.5
2020-10-27 CVE-2018-21269 Link Following vulnerability in Openrc Project Openrc
checkpath in OpenRC through 0.42.1 might allow local users to take ownership of arbitrary files because a non-terminal path component can be a symlink.
local
low complexity
openrc-project CWE-59
5.5