Description
Conda is a system-level binary package and environment manager that runs on major operating systems and platforms. Prior to 26.5.2, parse_entry_point_def in conda/common/path/python.py accepted an unvalidated entry-point command from a noarch:python package's info/link.json metadata. CreatePythonEntryPointAction in conda/core/path_actions.py interpolated that command into target_short_path, and PrefixPathAction.target_full_path joined it to the installation prefix without verifying that the result remained under the intended bin or Scripts directory. create_python_entry_point in conda/gateways/disk/create.py then wrote an executable wrapper to the resulting path. A malicious package could use path separators, traversal segments, or an absolute command path to write outside the prefix or overwrite another in-prefix entry point during default install and environment transactions. Out-of-prefix writes require the target parent directory to exist, while an overwritten entry point can execute attacker-controlled Python when later invoked with the installing user's privileges. This issue is fixed in version 26.5.2.
Published: 2026-09-21
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Arbitrary File Write
Action: Patch
AI Analysis

Impact

Conda’s package installer allowed unvalidated entry‑point commands from noarch:python packages. The command was written directly to a path derived from the installation prefix without verifying that the result stayed under the intended bin or Scripts directory. A malicious package could use path separators, traversal segments, or an absolute path to create or overwrite files outside the prefix or to replace an existing entry point. The resulting write would execute attacker‑controlled Python code with the installing user’s privileges, providing a vector for arbitrary code execution.

Affected Systems

Any system running Conda prior to version 26.5.2 is affected. The vulnerability originates in conda/common/path/python.py, conda/core/path_actions.py, and conda/gateways/disk/create.py. During default install operations or environment transactions, an untrusted noarch:python package can instruct Conda to create or overwrite executables in the bin or Scripts directory or write files to directories outside the installation prefix if those parent directories already exist.

Risk and Exploitability

The CVSS score of 8.8 indicates high severity, while the EPSS score is not available and the issue is not listed in CISA KEV, suggesting limited exploitation so far. The likely attack vector is local: an attacker who can influence the package feed or supply a malicious noarch:python package can subvert the entry‑point generation to write arbitrary files or replace execution wrappers. Successful exploitation would allow the installation user to run arbitrary Python code with their privileges and potentially compromise system configuration or other users sharing the same Conda installation.

Generated by OpenCVE AI on September 21, 2026 at 16:50 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to Conda version 26.5.2 or later, which validates entry‑point paths.
  • Configure Conda to disable or restrict installation of noarch:python packages from untrusted channels or use channel‑whitelisting policies.
  • As a temporary safeguard, review and clean the bin/Scripts directories after installation and restrict write permissions to the installation prefix.

Generated by OpenCVE AI on September 21, 2026 at 16:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 21 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Conda
Conda conda
Vendors & Products Conda
Conda conda

Mon, 21 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 21 Sep 2026 15:45:00 +0000

Type Values Removed Values Added
Description Conda is a system-level binary package and environment manager that runs on major operating systems and platforms. Prior to 26.5.2, parse_entry_point_def in conda/common/path/python.py accepted an unvalidated entry-point command from a noarch:python package's info/link.json metadata. CreatePythonEntryPointAction in conda/core/path_actions.py interpolated that command into target_short_path, and PrefixPathAction.target_full_path joined it to the installation prefix without verifying that the result remained under the intended bin or Scripts directory. create_python_entry_point in conda/gateways/disk/create.py then wrote an executable wrapper to the resulting path. A malicious package could use path separators, traversal segments, or an absolute command path to write outside the prefix or overwrite another in-prefix entry point during default install and environment transactions. Out-of-prefix writes require the target parent directory to exist, while an overwritten entry point can execute attacker-controlled Python when later invoked with the installing user's privileges. This issue is fixed in version 26.5.2.
Title Conda: Entry-point path traversal in noarch:python install (arbitrary file write) — canonical Python implementation
Weaknesses CWE-22
CWE-73
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-21T18:47:14.680Z

Reserved: 2026-06-11T15:46:12.318Z

Link: CVE-2026-53940

cve-icon Vulnrichment

Updated: 2026-09-21T18:46:59.451Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-21T16:17:09.010

Modified: 2026-09-24T21:16:28.120

Link: CVE-2026-53940

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T19:23:14Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

  • CWE-73

    External Control of File Name or Path