Описание
A flaw was found in policycoreutils through 3.10 in seunshare. A TOCTOU race lets a local user running in an unconfined SELinux domain delete arbitrary root-owned files. Removing critical system files can cause denial of service; integrity impact is limited to unauthorized deletion.
Отчет
policycoreutils seunshare is vulnerable to a local TOCTOU race. A low-privileged user in an unconfined SELinux domain may delete root-owned files, which can disrupt the system. Attack complexity is high. Affects policycoreutils through 3.10.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | policycoreutils | Under investigation | ||
| Red Hat Enterprise Linux 6 | policycoreutils | Out of support scope | ||
| Red Hat Enterprise Linux 7 | policycoreutils | Under investigation | ||
| Red Hat Enterprise Linux 8 | policycoreutils | Under investigation | ||
| Red Hat Enterprise Linux 9 | policycoreutils | Under investigation | ||
| Red Hat OpenShift Container Platform 4 | rhcos | Fix deferred | ||
| Red Hat Hardened Images | policycoreutils-main-3.11-2.1.hum1 | Fixed | RHSA-2026:44343 | 23.07.2026 |
Показывать по
Дополнительная информация
Статус:
5.3 Medium
CVSS3
Связанные уязвимости
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in s ...
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.
5.3 Medium
CVSS3