OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "4.2.6"
},
{
"introduced": "0"
},
{
"last_affected": "5.0.0"
}
]
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-41915.json"
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "37"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "38"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "39"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "10.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "12.0"
}
]
}
]