The Gentoo sci-mathematics/gimps package prior to 28.10-r1 for Great Internet Mersenne Prime Search (GIMPS) allows local users to gain privileges by creating a hard link under /var/lib/gimps, because an unsafe "chown -R" command is executed.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gentoo sci-mathematics-gimps 28.10 |