Количество 4
Количество 4
CVE-2026-35351
The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries. The utility falls back to a copy-and-delete routine that creates the destination file using the caller's UID/GID rather than the source's metadata. This flaw breaks backups and migrations, causing files moved by a privileged user (e.g., root) to become root-owned unexpectedly, which can lead to information disclosure or restricted access for the intended owners.
CVE-2026-35351
The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries. The utility falls back to a copy-and-delete routine that creates the destination file using the caller's UID/GID rather than the source's metadata. This flaw breaks backups and migrations, causing files moved by a privileged user (e.g., root) to become root-owned unexpectedly, which can lead to information disclosure or restricted access for the intended owners.
CVE-2026-35351
The mv utility in uutils coreutils fails to preserve file ownership du ...
GHSA-957r-r8gc-vv3h
uutils coreutils doesn't preserve file ownership during moves across different filesystem boundaries
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-35351 The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries. The utility falls back to a copy-and-delete routine that creates the destination file using the caller's UID/GID rather than the source's metadata. This flaw breaks backups and migrations, causing files moved by a privileged user (e.g., root) to become root-owned unexpectedly, which can lead to information disclosure or restricted access for the intended owners. | CVSS3: 4.2 | 0% Низкий | 4 месяца назад | |
CVE-2026-35351 The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries. The utility falls back to a copy-and-delete routine that creates the destination file using the caller's UID/GID rather than the source's metadata. This flaw breaks backups and migrations, causing files moved by a privileged user (e.g., root) to become root-owned unexpectedly, which can lead to information disclosure or restricted access for the intended owners. | CVSS3: 4.2 | 0% Низкий | 4 месяца назад | |
CVE-2026-35351 The mv utility in uutils coreutils fails to preserve file ownership du ... | CVSS3: 4.2 | 0% Низкий | 4 месяца назад | |
GHSA-957r-r8gc-vv3h uutils coreutils doesn't preserve file ownership during moves across different filesystem boundaries | CVSS3: 4.2 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу