Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

ubuntu логотип

CVE-2026-35370

4 месяца назад

The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to potentially divergent output compared to GNU coreutils. Because many scripts and automated processes rely on the output of id to make security-critical access-control or permission decisions, this discrepancy can lead to unauthorized access or security misconfigurations.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2026-35370

4 месяца назад

The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to potentially divergent output compared to GNU coreutils. Because many scripts and automated processes rely on the output of id to make security-critical access-control or permission decisions, this discrepancy can lead to unauthorized access or security misconfigurations.

CVSS3: 4.4
EPSS: Низкий
debian логотип

CVE-2026-35370

4 месяца назад

The id utility in uutils coreutils miscalculates the groups= section o ...

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-47c7-qrm7-mqw7

около 1 месяца назад

id: groups= computed from real GID instead of effective GID

CVSS3: 4.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-35370

The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to potentially divergent output compared to GNU coreutils. Because many scripts and automated processes rely on the output of id to make security-critical access-control or permission decisions, this discrepancy can lead to unauthorized access or security misconfigurations.

CVSS3: 4.4
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-35370

The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to potentially divergent output compared to GNU coreutils. Because many scripts and automated processes rely on the output of id to make security-critical access-control or permission decisions, this discrepancy can lead to unauthorized access or security misconfigurations.

CVSS3: 4.4
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-35370

The id utility in uutils coreutils miscalculates the groups= section o ...

CVSS3: 4.4
0%
Низкий
4 месяца назад
github логотип
GHSA-47c7-qrm7-mqw7

id: groups= computed from real GID instead of effective GID

CVSS3: 4.4
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу