alpine 3.6
misc weakness #69

The software specifies permissions for a security-critical resource in a way that allows the resource to be read or modified by unintended actors.

2

Weakness Breakdown


Warning code(s):

Check when opening files - can an attacker redirect it.

File Name:

./src/GConf-3.2.6/gconf/gconf-internals.c

Context:
fd = open (uniquefile, O_WRONLY | O_CREAT, 0700);

The registered trademark Linux® is used pursuant to a sublicense from the Linux Foundation, the exclusive licensee of Linus Torvalds, owner of the mark on a world­wide basis.