CVE-2026-96284
Gravedad CVSS v3.1:
BAJA
Tipo:
CWE-59
Incorrecta resolución de una ruta antes de aceder a un fichero (Seguimiento de enlaces)
Fecha de publicación:
27/09/2026
Última modificación:
27/09/2026
Descripción
*** Pendiente de traducción *** A malicious user can get read-access to files in the flatpak-system-helper context if a system OCI repository is configured, because the OCI code paths in the system helper follow symlinks when importing OCI images that are under the user's control.
Impacto
Puntuación base 3.x
2.50
Gravedad 3.x
BAJA


