CVE-2026-96807
4
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L
Summary
In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$appid/.ld.so with a symlink, causing regenerate_ld_cache to write files at an arbitrary location. The filenames and content are not attacker controlled, making this hard to exploit.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Flatpak | Flatpak | 0 < 1.18.1 | affected |
Weaknesses
- CWE-61: CWE-61 UNIX Symbolic Link (Symlink) Following
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.