Количество 7
Количество 7
CVE-2026-41054
In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`.
CVE-2026-41054
In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`.
CVE-2026-41054
Missing exit out of permission check in haveged could lead to root exploit
CVE-2026-41054
In `src/havegecmd.c`, the `socket_handler` function performs a credent ...
SUSE-SU-2026:2009-1
Security update for haveged
SUSE-SU-2026:2008-1
Security update for haveged
GHSA-c5g3-m8p9-m3gh
In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-41054 In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`. | CVSS3: 7.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-41054 In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`. | CVSS3: 7.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-41054 Missing exit out of permission check in haveged could lead to root exploit | CVSS3: 7.8 | 0% Низкий | 3 месяца назад | |
CVE-2026-41054 In `src/havegecmd.c`, the `socket_handler` function performs a credent ... | CVSS3: 7.8 | 0% Низкий | 3 месяца назад | |
SUSE-SU-2026:2009-1 Security update for haveged | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:2008-1 Security update for haveged | 0% Низкий | 3 месяца назад | ||
GHSA-c5g3-m8p9-m3gh In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`. | CVSS3: 7.8 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу