CyberRota
← Ana sayfaya dön

CVE-2026-54228

HIGH · CVSS 7.8 EPSS %0.10

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-06-13T03:16:21.440 · Çekilme zamanı: 2026-06-30T12:19:14.032144+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-54228
Severity
HIGH
CVSS
7.8
EPSS
%0.10

Orijinal NVD Açıklaması

A time-of-check time-of-use (TOCTOU) race condition was found in the abrt-dbus D-Bus service's SetElement method. Between dump directory creation and post-create event execution, any local user can call SetElement to write arbitrary text files into the root-owned dump directory, bypassing package validation and allowing crashes of unpackaged binaries to survive post-create processing.