Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.2
CVE-2026-54370
- EPSS 0.09%
- Veröffentlicht 29.06.2026 12:38:11
- Zuletzt bearbeitet 29.06.2026 19:22:57
acl before version 2.4.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability that allows local attackers to escalate privileges by replacing a pathname component with a symbolic link between an lstat() check and subsequent s...
8.4
CVE-2026-54369
- EPSS 0.15%
- Veröffentlicht 29.06.2026 12:37:21
- Zuletzt bearbeitet 19.08.2026 12:18:32
acl before version 2.4.0 contains a symlink traversal vulnerability in the libacl pathname-based functions acl_get_file(), acl_set_file(), acl_extended_file(), and acl_delete_def_file() that allows local attackers to escalate privileges by replacing ...
1