Loading HuntDB...

GHSA-jw54-c8rr-pjpq

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

os.OpenFile(path, os.O_CREATE|O_EXCL) behaved differently on Unix and Windows systems when the target path was a dangling symlink. On Unix systems, OpenFile with O_CREATE and O_EXCL flags never follows symlinks. On Windows, when the target path was a symlink to a nonexistent location, OpenFile would create a file in that location. OpenFile now always returns an error when the O_CREATE and O_EXCL flags are both set and the target path is a symlink.

Related CVEs

Key Information

GHSA ID
GHSA-jw54-c8rr-pjpq
Published
June 11, 2025 6:35 PM
Last Modified
June 11, 2025 6:35 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 13, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.