CVE-2021-25317

Related Vulnerabilities: CVE-2021-25317  

No description is available for this CVE.

Description

No description is available for this CVE.

Statement

This issue does not affect the upstream CUPS, only the CUPS versions as packaged by some OS vendors.

This issue does not affect the upstream CUPS, only the CUPS versions as packaged by some OS vendors.

Additional Information

  • Bugzilla 1949119: CVE-2021-25317 cups: insecure permissions of /var/log/cups allows for symlink attacks
  • CWE-276->CWE-59: Incorrect Default Permissions leads to Improper Link Resolution Before File Access ('Link Following')
  • FAQ: Frequently asked questions about CVE-2021-25317