vulnerability

FreeBSD: VID-b4ecf774-eb01-11e6-9ac1-a4badb2f4699 (CVE-2016-8606): guile2 -- multiple vulnerabilities

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Feb 4, 2017
Added
Feb 5, 2017
Modified
Dec 10, 2025

Description

Ludovic Courtès reports: The REPL server is vulnerable to the HTTP inter-protocol attack The ‘mkdir’ procedure of GNU Guile, an implementation of the Scheme programming language, temporarily changed the process’ umask to zero. During that time window, in a multithreaded application, other threads could end up creating files with insecure permissions.

Solution

freebsd-upgrade-package-guile2
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.