Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 56

Количество 56

ubuntu логотип

CVE-2026-32282

3 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
redhat логотип

CVE-2026-32282

3 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-32282

3 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
msrc логотип

CVE-2026-32282

24 дня назад

TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix

EPSS: Низкий
debian логотип

CVE-2026-32282

3 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while ...

CVSS3: 6.4
EPSS: Низкий
rocky логотип

RLSA-2026:25999

8 дней назад

Moderate: yggdrasil-worker-package-manager security update

EPSS: Низкий
github логотип

GHSA-xj38-jxc5-rppx

3 месяца назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
fstec логотип

BDU:2026-07252

3 месяца назад

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260430-73-0011

около 2 месяцев назад

Уязвимость golang

CVSS3: 6.4
EPSS: Низкий
rocky логотип

RLSA-2026:19351

30 дней назад

Important: grafana-pcp security update

EPSS: Низкий
rocky логотип

RLSA-2026:19136

29 дней назад

Important: grafana-pcp security update

EPSS: Низкий
rocky логотип

RLSA-2026:17075

около 1 месяца назад

Important: yggdrasil security update

EPSS: Низкий
rocky логотип

RLSA-2026:11712

около 2 месяцев назад

Important: grafana security update

EPSS: Низкий
rocky логотип

RLSA-2026:11711

около 2 месяцев назад

Important: grafana security update

EPSS: Низкий
rocky логотип

RLSA-2026:11704

около 2 месяцев назад

Important: grafana-pcp security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19351

4 дня назад

ELSA-2026-19351: grafana-pcp security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-17075

около 2 месяцев назад

ELSA-2026-17075: yggdrasil security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-11712

около 2 месяцев назад

ELSA-2026-11712: grafana security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-11711

около 2 месяцев назад

ELSA-2026-11711: grafana security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-11704

около 2 месяцев назад

ELSA-2026-11704: grafana-pcp security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 7.8
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-32282

TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix

0%
Низкий
24 дня назад
debian логотип
CVE-2026-32282

On Linux, if the target of Root.Chmod is replaced with a symlink while ...

CVSS3: 6.4
0%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:25999

Moderate: yggdrasil-worker-package-manager security update

0%
Низкий
8 дней назад
github логотип
GHSA-xj38-jxc5-rppx

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
0%
Низкий
3 месяца назад
fstec логотип
BDU:2026-07252

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
0%
Низкий
3 месяца назад
redos логотип
ROS-20260430-73-0011

Уязвимость golang

CVSS3: 6.4
0%
Низкий
около 2 месяцев назад
rocky логотип
RLSA-2026:19351

Important: grafana-pcp security update

30 дней назад
rocky логотип
RLSA-2026:19136

Important: grafana-pcp security update

29 дней назад
rocky логотип
RLSA-2026:17075

Important: yggdrasil security update

около 1 месяца назад
rocky логотип
RLSA-2026:11712

Important: grafana security update

около 2 месяцев назад
rocky логотип
RLSA-2026:11711

Important: grafana security update

около 2 месяцев назад
rocky логотип
RLSA-2026:11704

Important: grafana-pcp security update

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-19351

ELSA-2026-19351: grafana-pcp security update (IMPORTANT)

4 дня назад
oracle-oval логотип
ELSA-2026-17075

ELSA-2026-17075: yggdrasil security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-11712

ELSA-2026-11712: grafana security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-11711

ELSA-2026-11711: grafana security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-11704

ELSA-2026-11704: grafana-pcp security update (IMPORTANT)

около 2 месяцев назад

Уязвимостей на страницу