CVE-2021-20197: Race Condition
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar objcopy strip ranlib. When these utilities are run as a privileged user (presumably as part of a script updating binaries across different users) an unprivileged user can trick these utilities into getting ownership of arbitrary files through a symlink.
Other sources
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When these utilities are run as a privileged user (presumably as part of a script updating binaries across different users), an unprivileged user can trick these utilities into getting ownership of arbitrary files through a symlink.
Reference:
https://sourceware.org/bugzilla/showbug.cgi?id=26945
— Red Hat
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-20197?
CVE-2021-20197 is a vulnerability in GNU binutils version 2.35 and earlier, which allows an unprivileged user to trick a privileged user into overwriting arbitrary files.
How severe is CVE-2021-20197?
CVE-2021-20197 has a severity rating of 6.3 (medium).
Which utilities in GNU binutils are affected by CVE-2021-20197?
The following utilities in GNU binutils version 2.35 and earlier are affected: ar, objcopy, strip, ranlib.
Which operating systems are affected by CVE-2021-20197?
The affected operating systems include Redhat Enterprise Linux 8.0, Netapp Cloud Backup, NetApp ONTAP Select Deploy administration utility, Netapp Solidfire & Hci Management Node, and Broadcom Brocade Fabric Operating System Firmware.
Are there any references for CVE-2021-20197?
Yes, you can find more information about CVE-2021-20197 at the following references: [Link 1], [Link 2], [Link 3].