Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pmf3-4g49-qvxm

Опубликовано: 03 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.3

Описание

SWUpdate before 2026.05 is affected by a time-of-check time-of-use (TOCTOU) race condition that allows local unprivileged attackers to escalate privileges to root or install untrusted contents using a signed update.

SWUpdate before 2026.05 is affected by a time-of-check time-of-use (TOCTOU) race condition that allows local unprivileged attackers to escalate privileges to root or install untrusted contents using a signed update.

EPSS

Процентиль: 1%
0.00101
Низкий

7.3 High

CVSS4

Дефекты

CWE-367

Связанные уязвимости

ubuntu
3 месяца назад

SWUpdate before 2026.05 is affected by a time-of-check time-of-use (TOCTOU) race condition that allows local unprivileged attackers to escalate privileges to root or install untrusted contents using a signed update.

nvd
3 месяца назад

SWUpdate before 2026.05 is affected by a time-of-check time-of-use (TOCTOU) race condition that allows local unprivileged attackers to escalate privileges to root or install untrusted contents using a signed update.

debian
3 месяца назад

SWUpdate before 2026.05 is affected by a time-of-check time-of-use (TO ...

EPSS

Процентиль: 1%
0.00101
Низкий

7.3 High

CVSS4

Дефекты

CWE-367