PT-2026-86845 · Red Hat · Red Hat Enterprise Linux 10+6

CVE-2026-86469

·

Publicado

2026-09-07

·

Atualizado

2026-09-07

CVSS v3.1

5.3

Média

VetorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:L
A flaw was found in GLib2. When g file replace() is used with G FILE CREATE REPLACE DESTINATION and creating the .goutputstream-XXXXXX temporary file fails, the library unlinks the destination and recreates it without exclusive creation or symlink protection. A local attacker who can write to the destination directory can win that race and redirect the write to another file.

Exploit

Correção

Link Following

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-86469

Produtos afetados

Red Hat Enterprise Linux 10
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 8
Red Hat Enterprise Linux 9
Red Hat Hardened Images
Red Hat Openshift Container Platform 4