Source: tmpreaper Version: 1.6.13+nmu1 Severity: grave Tags: security Control: fixed -1 1.6.13+nmu1+deb9u1
Hi, The following vulnerability was published for tmpreaper, as per DSA 4365-1. CVE-2019-3461[0]: Stephen Roettger discovered a race condition in tmpreaper, a program that cleans up files in directories based on their age, which could result in local privilege escalation. If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. Regards, Salvatore