Medium severity5.5NVD Advisory· Published Aug 16, 2019· Updated Jun 17, 2026
CVE-2019-15119
CVE-2019-15119
Description
lib/install/install.go in cnlh nps through 0.23.2 uses 0777 permissions for /usr/local/bin/nps and/or /usr/bin/nps, leading to a file overwrite by a local user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
ehang.io/npsGo | < 0.23.2 | 0.23.2 |
Affected products
4- cnlh/npsdescription
- ghsa-coords2 versions
< 0.23.2+ 1 more
- (no CPE)range: < 0.23.2
- (no CPE)range: < 0.0.20250422T181640-1.1
Patches
Vulnerability mechanics
References
4- github.com/cnlh/nps/commit/7178b3380720e910d283036a8d39879a94105515nvdPatchThird Party AdvisoryWEB
- github.com/cnlh/nps/issues/176nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-2vp2-8m5j-4rjxghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2019-15119ghsaADVISORY
News mentions
0No linked articles in our index yet.