#VU13990 Race condition in Phusion Passenger - CVE-2018-12029
Published: July 24, 2018
Phusion Passenger
Phusion B.V.
Description
The vulnerability allows a local attacker to gain elevated privileges.
The vulnerability exists due to a race condition that could occur when a non-standard passenger_instance_registry_dir setting n the Nginx moduleis configured with insufficient permissions. A local attacker can replace a file with a symbolic link after the file has been created before the file has changed ownershipto gain elevated privileges on the system if the target of the symbolic link is a file that can be executed as root, such as the crontab file.