ColPack 1.0.10 through 9a7293a has a predictable...
Moderate severity
Unreviewed
Published
Dec 9, 2024
to the GitHub Advisory Database
•
Updated Dec 17, 2024
Description
Published by the National Vulnerability Database
Dec 9, 2024
Published to the GitHub Advisory Database
Dec 9, 2024
Last updated
Dec 17, 2024
ColPack 1.0.10 through 9a7293a has a predictable temporary file (located under /tmp with a name derived from an unseeded RNG). The impact can be overwriting files or making ColPack graphing unavailable to other users.
References