Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h5vx-6jh5-qhq7

Опубликовано: 30 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.8

Описание

A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in  cosmic-greeter can allow an attacker to regain privileges that should have been dropped and abuse them in the racy checking logic.

This issue affects cosmic-greeter before https://github.Com/pop-os/cosmic-greeter/pull/426.

A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in  cosmic-greeter can allow an attacker to regain privileges that should have been dropped and abuse them in the racy checking logic.

This issue affects cosmic-greeter before https://github.Com/pop-os/cosmic-greeter/pull/426.

EPSS

Процентиль: 2%
0.00012
Низкий

5.8 Medium

CVSS4

Дефекты

CWE-271

Связанные уязвимости

nvd
3 дня назад

A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in  cosmic-greeter can allow an attacker to regain privileges that should have been dropped and abuse them in the racy checking logic. This issue affects cosmic-greeter before https://github.Com/pop-os/cosmic-greeter/pull/426.

debian
3 дня назад

A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCT ...

EPSS

Процентиль: 2%
0.00012
Низкий

5.8 Medium

CVSS4

Дефекты

CWE-271