CVE-2020-15076: High severity private tunnel vulnerability
Published May 26, 2021
·Updated
Private Tunnel installer for macOS version 3.0.1 and older versions may corrupt system critical files it should not have access via symlinks in /tmp.
Affected Software
1 affected component
OpenVPN Private Tunnel Macos<=3.0.1
Event History
May 26, 2021
CVE Published
via MITRE·06:17 PM
Data Sourced
via MITRE·06:17 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2020-15076.
2
What is the severity of CVE-2020-15076?
The severity of CVE-2020-15076 is high, with a severity value of 7.8.
3
What is affected by CVE-2020-15076?
Private Tunnel installer for macOS version 3.0.1 and older versions are affected by CVE-2020-15076.
4
What is the impact of CVE-2020-15076?
CVE-2020-15076 can corrupt system critical files it should not have access to via symlinks in /tmp.
5
How can I fix CVE-2020-15076?
To fix CVE-2020-15076, users should update to a version of Private Tunnel installer for macOS that is newer than 3.0.1.