{"id":"MGASA-2021-0515","summary":"Updated arpwatch packages fix security vulnerability","details":"A symbolic link (Symlink) following vulnerability in arpwatch allows local\nattackers with control of the runtime user to run arpwatch and to escalate\nto root upon the next restart of arpwatch. (CVE-2021-25321)\n","modified":"2026-04-16T04:42:11.558635827Z","published":"2021-11-20T19:31:06Z","upstream":["CVE-2021-25321"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2021-0515.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=29188"},{"type":"WEB","url":"https://lists.suse.com/pipermail/sle-security-updates/2021-June/009098.html"},{"type":"WEB","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/Y7SKTH3533HITV3EN436RULMJP2HHQND/"}],"affected":[{"package":{"name":"arpwatch","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/arpwatch?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.1a15-21.2.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0515.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}