CVE-2020-25040 PUBLISHED

Sylabs Singularity through 3.6.2 has Insecure Permissions on temporary directories used in explicit and implicit container build operations, a different vulnerability than CVE-2020-25039.

EPSS 0.74% · 72.9th percentile

Risk Scores

EPSS Score
0.74%
72.9th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:18.04:LTSsingularity-container2.4.2-3, 2.4.2-4, 2.4.2-4ubuntu0.1~esm1
Ubuntu:Pro:24.04:LTSsingularity-container0, 4.1.1+ds2-1build1, 4.1.1+ds2-1ubuntu0.1
Ubuntu:25.10singularity-container0, 4.1.5+ds4-1

Timeline

References

Open in Interactive Console →