权限提升漏洞:在 提供的 包的 actor 中发现了权限提升漏洞。 在从 RHEL 9 升级到 RHEL 10 的过程中,该 actor 会以 root 身份在 Leapp actor 上下文中直接运行: 这一操作绕过了通常以 身份启动守护进程的标准 MySQL systemd 单元。 攻击路径: 以 OS 身份被攻陷的进程可以向 (该目录由 用户所有)写入: - 一个 version-2 的持久化配置文件( ); - 一个恶意的共享对象(shared object)。 该持久化配置可以将 设置为 ,并设置 (或相
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat OpenStack Platform 17.1 | - |
cpe:/a:redhat:openstack:17.1
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81303 | 6.3 MEDIUM | Hawtio-operator: hawtio-operator: routes/custom-host confused-deputy via spec.routehostnam |
| CVE-2026-81320 | 5.5 MEDIUM | Hawtio-operator: hawtio-operator: tls private key written to operator log at debug level |
No comments yet