Red Hat sblim-cmpi-base是美国Red Hat公司的一个提供通用基础组件的软件工具。 Red Hat sblim-cmpi-base存在资源管理错误漏洞,该漏洞源于提供程序注册脚本中不安全的临时文件创建,可能导致本地非特权用户通过符号链接攻击重定向特权写入到任意文件,覆盖root拥有的文件,从而破坏系统服务或操作。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 6 | any |
unknown |
| Red Hat | Red Hat Enterprise Linux 7 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-73266 | 7.1 HIGH | Clusterclaims-controller: confused deputy: tenant-controlled clusterclaim labels propagate |
| CVE-2026-73583 | 6.6 MEDIUM | Sblim-sfcb: unsafe deserialization in sblim-sfcb provider-manager ipc allows out-of-bounds |
| CVE-2026-18728 | 6.5 MEDIUM | Open-iscsi: open-iscsi: integer underflow in iscsiuio ipv4 dhcp parsing |
| CVE-2026-73584 | 6.3 MEDIUM | Sblim-sfcb: sblim-sfcb: privileged file corruption and denial of service via insecure temp |
| CVE-2026-19730 | 4.2 MEDIUM | Podman: podman: quadlet install --replace non-truncating write retains removed host-access |
No comments yet