A symbolic link (Symlink) following vulnerability in arpwatch allows local
attackers with control of the runtime user to run arpwatch and to escalate
to root upon the next restart of arpwatch. (CVE-2021-25321)
- https://bugs.mageia.org/show_bug.cgi?id=29188
- https://lists.suse.com/pipermail/sle-security-updates/2021-June/009098.html
-
- https://www.cve.org/CVERecord?id=CVE-2021-25321
- 8/core/arpwatch-2.1a15-21.2.mga8
Get the latest Linux and open source security news straight to your inbox.