Executive brief
Cargo not respecting umask when extracting crate archives
Affected products
- crates.io cargo
Junglewise Threat Intelligence
CVE-2023-38497 · Severity: low · CVSS 3.1 · Published 2023-08-03
Technologies: cargo (crates.io). Vendors: crates.io.
Cargo not respecting umask when extracting crate archives