racecondition in posix platform
Team,
File:
gnutls-3.5.19/lib/fips.c:83
gnutls-3.5.19/src/libopts/time.c:101
gnutls-3.5.19/src/libopts/compat/pathfind.c:84
I believe this indicates a security flaw, If an attacker can change anything along the path between the call access()
and the files actually used, attacker may exploit the race condition or a time-of-check, time-of-use race condition, request team to please have a look and validate.
Reference: https://linux.die.net/man/2/access