uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges by creating a hard link within the /var/spool/uptimed directory, because there is an unsafe chown -R call.
{
"binaries": [
{
"binary_version": "1:0.3.17-4",
"binary_name": "libuptimed-dev"
},
{
"binary_version": "1:0.3.17-4",
"binary_name": "libuptimed0"
},
{
"binary_version": "1:0.3.17-4",
"binary_name": "uprecords-cgi"
},
{
"binary_version": "1:0.3.17-4",
"binary_name": "uptimed"
}
]
}