CVE-2020-25031 (NVD)

2020-08-31

checkinstall 1.6.2, when used to create a package that contains a symlink, may trigger the creation of a mode 0777 executable file.

Products Checkinstall
Type Improper Link Resolution Before File Access ('Link Following') (CWE-59)
First patch - None (likely due to unavailable code)
Links https://bugs.launchpad.net/ubuntu/+source/checkinstall/+bug/1861281