OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-29702.json"