CVE-2008-1570

6.9
CVSS v2.0 Base Score
0.22%
LOW RiskEPSS (12th percentile)

Race condition in the create_lockpath function in policyd-weight 0.1.14 beta-16 allows local users to modify or delete arbitrary files by creating the LOCKPATH directory, then modifying it after the symbolic link check occurs. NOTE: this is due to an incomplete fix for CVE-2008-1569.

Published: 3/31/2008
Modified: 6/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

6.9

AV:L/AC:M/Au:N/C:C/I:C/A:C

EPSS Score (Exploitation Probability)

0.22%LOW Exploitation Risk
12th percentile

This vulnerability has a 0.22% probability of being exploited in the next 30 days, ranking higher than 12% of all scored CVEs.

CWE Classification

Advertisement