{"id":"CVE-2021-44512","details":"World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.","modified":"2026-03-14T08:24:13.895438Z","published":"2021-12-07T03:15:07.160Z","references":[{"type":"ADVISORY","url":"https://www.openwall.com/lists/oss-security/2021/12/06/2"},{"type":"FIX","url":"https://github.com/tmate-io/tmate-ssh-server/commit/1c020d1f5ca462f5b150b46a027aaa1bbe3c9596"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/tmate-io/tmate-ssh-server","events":[{"introduced":"0"},{"last_affected":"8fc519a62512bbfedefc7cee55511f3063f2958d"},{"fixed":"1c020d1f5ca462f5b150b46a027aaa1bbe3c9596"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"2.3.0"}]}}],"versions":["1.7","1.8","1.9","1.9a","2.0","2.1","2.3.0","base","to_copy"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-44512.json","vanir_signatures":[{"source":"https://github.com/tmate-io/tmate-ssh-server/commit/1c020d1f5ca462f5b150b46a027aaa1bbe3c9596","signature_type":"Function","id":"CVE-2021-44512-b4fa32fc","signature_version":"v1","digest":{"length":1691,"function_hash":"316549956568796934807268776517522169863"},"deprecated":false,"target":{"file":"tmate-main.c","function":"main"}},{"source":"https://github.com/tmate-io/tmate-ssh-server/commit/1c020d1f5ca462f5b150b46a027aaa1bbe3c9596","signature_type":"Line","id":"CVE-2021-44512-b5bc6fcf","signature_version":"v1","digest":{"line_hashes":["80207026068406672254999970398237947067","173423011980781517915885963108284035295","306643597840451258993558618338827943855","83505621522273002792930872341900023227","136076212102058759837031658291138517335","310518699917455409064642457929409388070","176290184624510983014086540170709540683","152451022566174787559069177947798513311","72876143243196640920421934159468931924","184047213435252695687185796533395052901","21004837053619300072504869666184033231","211129072721360576409360749973093728649","229693977904854031536266170358141525484","152841598158707753820788575096253228192"],"threshold":0.9},"deprecated":false,"target":{"file":"tmate-main.c"}}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}