Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.9 PyPI

Race Condition in Paramiko

GHSA-f8q4-jwww-x3wv · CVE-2022-24302 · PYSEC-2022-166

Published · Modified

Description

In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized information disclosure.

References

Ready to move

Start Securing

Free, no credit card | First findings in minutes