Impact
An unverified ownership vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute's pardus-domain-joiner allows an attacker to abuse privilege and terminate arbitrary processes, a weakness categorized as CWE‑283. The defect arises when ownership checks are bypassed, enabling a user with sufficient local access to kill any process, thereby potentially disrupting services or compromising system stability.
Affected Systems
The vulnerability affects TÜBİTAK BİLGEM Software Technologies Research Institute’s pardus-domain-joiner on all versions earlier than 0.5.5.
Risk and Exploitability
The CVSS score of 3.3 indicates a low severity, and the EPSS score is not available; the vulnerability is not listed in the CISA KEV catalogue. Attackers likely need local access with some form of elevated privileges to abuse the ownership check, though the exact attack vector is inferred rather than explicitly documented.
OpenCVE Enrichment