Loading...
Loading...
Race condition in the xdg.BaseDirectory.get_runtime_dir function in python-xdg 0.25 allows local users to overwrite arbitrary files by pre-creating /tmp/pyxdg-runtime-dir-fallback-victim to point to a victim-owned location, then replacing it with a symlink to an attacker-controlled location once the get_runtime_dir function is called.
January 28, 2014
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2014-1624
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.