Singularity Incorrect Access Control
Moderate severity
GitHub Reviewed
Published
May 14, 2022
to the GitHub Advisory Database
•
Updated Oct 6, 2023
Package
Affected versions
>= 2.3.0, <= 2.5.1
Patched versions
2.5.2
Description
Published by the National Vulnerability Database
Jul 5, 2018
Published to the GitHub Advisory Database
May 14, 2022
Reviewed
Jul 22, 2023
Last updated
Oct 6, 2023
Singularity 2.3.0 through 2.5.1 is affected by an incorrect access control on systems supporting overlay file system. When using the overlay option, a malicious user may access sensitive information by exploiting a few specific Singularity features.
References