In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized information disclosure.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| paramiko(PyPI) | 2.10.0 | 2.10.1 | N/A |
| paramiko(PyPI) | 2.9.0 | 2.9.3 | N/A |
CVSS Metrics