Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-3006

Опубликовано: 27 апр. 2026
Источник: redhat
CVSS3: 7
EPSS Низкий

Описание

Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, potentially leading to local privilege escalation and granting system-level access to the affected software.

A flaw was found in winfsp. A local attacker could exploit a race condition vulnerability, which may lead to a kernel heap overflow. This could potentially result in local privilege escalation, granting the attacker system-level access to the affected software.

Отчет

Important: This flaw in winfsp allows a local attacker to achieve privilege escalation through a race condition and kernel heap overflow. This could grant system-level access to the affected software. Red Hat products such as rclone in Fedora and EPEL, and rhacm2/volsync-rhel9 in Red Hat Advanced Cluster Management for Kubernetes are potentially affected through transitive dependencies.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/volsync-rhel9Not affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-368
https://bugzilla.redhat.com/show_bug.cgi?id=2463150winfsp: winfsp: Local privilege escalation via race condition and kernel heap overflow

EPSS

Процентиль: 2%
0.00113
Низкий

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
nvd
4 месяца назад

Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, potentially leading to local privilege escalation and granting system-level access to the affected software.

CVSS3: 7
github
4 месяца назад

Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, potentially leading to local privilege escalation and granting system-level access to the affected software.

EPSS

Процентиль: 2%
0.00113
Низкий

7 High

CVSS3