Robotmk before 2.0.1 allows a local user to escalate privileges (e.g., to SYSTEM) if automated Python environment setup is enabled, because the "shared holotree usage" feature allows any user to edit any Python environment.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-07-04T00:00:00

Updated: 2024-08-02T04:33:11.627Z

Reserved: 2024-07-04T00:00:00

Link: CVE-2024-39934

cve-icon Vulnrichment

Updated: 2024-08-02T04:33:11.627Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-04T19:15:10.967

Modified: 2024-07-08T14:18:57.977

Link: CVE-2024-39934

cve-icon Redhat

No data.