Race condition in Snapd - CVE-2019-11503
Published: April 30, 2019 / Updated: January 29, 2020
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a race condition when processing symlinks using the chdir() function to restore a working directory. A local user can run snap-confine on a specially crafted symlink and restore files without necessary permissions.
Affected software
Fedora
snapd-glib
How to mitigate CVE-2019-11503
snapd-glib - addressed in versions 1.48-1.el7, 1.48-1.fc29, 1.48-1.fc30