Updated junit packages fix a security vulnerability
Publication date: 08 Nov 2020Modification date: 08 Nov 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-15250
Description
It was discovered that junit contained a local information disclosure vulnerability. On Unix like systems, the system's temporary directory is shared between all users on that system. Because of this, when files and directories are written into this directory they are, by default, readable by other users on that same system. This vulnerability does not allow other users to overwrite the contents of these directories or files. This is purely an information disclosure vulnerability (CVE-2020-15250).
References
SRPMS
7/core
- junit-4.12-7.1.mga7