{
  "affected": [
    {
      "ranges": [
        {
          "database_specific": {
            "versions": [
              {
                "introduced": "0"
              },
              {
                "fixed": "5.22.5"
              },
              {
                "introduced": "6.0.0"
              },
              {
                "fixed": "6.7.1"
              }
            ]
          },
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "f3f9ff8b29696091f5cca05477c0756aa8ad3cee"
            },
            {
              "introduced": "aec74ffe818542e83c6221c48b7a21d4383fef78"
            },
            {
              "fixed": "7b3b8a91a094865d0c1f576da0ae82d822a1bd16"
            }
          ],
          "repo": "https://github.com/buildkite/elastic-ci-stack-for-aws",
          "type": "GIT"
        }
      ]
    }
  ],
  "details": "A symbolic link following vulnerability in Buildkite Elastic CI for AWS versions prior to 6.7.1 and 5.22.5 allows the buildkite-agent user to change ownership of arbitrary directories via the PIPELINE_PATH variable in the fix-buildkite-agent-builds-permissions script.",
  "id": "CVE-2023-43116",
  "modified": "2026-03-13T21:55:30.734292191Z",
  "published": "2023-12-22T10:15:11.110Z",
  "references": [
    {
      "type": "EVIDENCE",
      "url": "https://github.com/atredispartners/advisories/blob/master/ATREDIS-2023-0003.md"
    }
  ],
  "severity": [
    {
      "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "type": "CVSS_V3"
    }
  ]
}