Threats Tagged 'cve-2026-16552'
View all threats tagged with 'cve-2026-16552'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-16552'
Click on any threat for detailed analysis and mitigation recommendations
A flaw was found in systemd-tmpfiles. (CVE-2026-16552)CVE-2026-16552 0 A vulnerability in systemd-tmpfiles allows an unprivileged local user to exploit symbolic link handling when writing files via tmpfiles.d configuration. The flaw arises because a safety check incorrectly treats transitions away from the root user as safe, enabling redirection of privileged writes to arbitrary files. The content written is controlled by the configuration, not the attacker. This vulnerability primarily impacts system integrity. Join the discussion | GCVE Database | 07/22/2026, 18:32:35 UTC Added: 07/22/2026, 23:24:24 UTC |
CVE-2026-16552: Improper Link Resolution Before File Access ('Link Following') in Red Hat Red Hat Enterprise Linux 10CVE-2026-16552 0 A flaw was found in systemd-tmpfiles. When processing a tmpfiles.d configuration entry that writes to a file, systemd-tmpfiles can follow a symbolic link placed by an unprivileged local user, and an existing safety check does not detect this specific case because it always treats transitions away from the root user as safe. On systems where a tmpfiles.d configuration targets a path an unprivileged user can influence, this could allow that user to redirect a privileged systemd-tmpfiles write to a file of their choosing, though the content written remains determined by the existing configuration rather than by the unprivileged user. The highest threat from this vulnerability is to integrity. Join the discussion | CVE Database V5 | 07/22/2026, 15:55:58 UTC Added: 07/22/2026, 16:08:39 UTC |
Showing 1 to 2 of 2 results