Polygen before 1.0.6 generates precompiled grammar objects with world-writable permissions, which allows local users to cause a denial of service (disk consumption) and possibly perform other unauthorized activities.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Polygen | Polygen | 1.0.6 (including) | 1.0.6 (including) |