Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-58x3-7493-rjr4

Опубликовано: 13 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance migration by manipulating a temporary file in the /tmp directory. By repeatedly recreating a symbolic link, the attacker can redirect privileged output to an arbitrary file. This can lead to privileged file corruption or a denial of service (DoS) on the system.

A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance migration by manipulating a temporary file in the /tmp directory. By repeatedly recreating a symbolic link, the attacker can redirect privileged output to an arbitrary file. This can lead to privileged file corruption or a denial of service (DoS) on the system.

EPSS

Процентиль: 1%
0.0009
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-377

Связанные уязвимости

CVSS3: 6.3
ubuntu
15 дней назад

A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance migration by manipulating a temporary file in the `/tmp` directory. By repeatedly recreating a symbolic link, the attacker can redirect privileged output to an arbitrary file. This can lead to privileged file corruption or a denial of service (DoS) on the system.

CVSS3: 6.3
redhat
15 дней назад

A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance migration by manipulating a temporary file in the `/tmp` directory. By repeatedly recreating a symbolic link, the attacker can redirect privileged output to an arbitrary file. This can lead to privileged file corruption or a denial of service (DoS) on the system.

CVSS3: 6.3
nvd
15 дней назад

A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance migration by manipulating a temporary file in the `/tmp` directory. By repeatedly recreating a symbolic link, the attacker can redirect privileged output to an arbitrary file. This can lead to privileged file corruption or a denial of service (DoS) on the system.

EPSS

Процентиль: 1%
0.0009
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-377