Impact
A missing authorization check in the SELinux policycoreutils tool seunshare allows a user running in an unconfined context to kill processes owned by the root user. The flaw does not provide remote code execution or direct control over system components, but it lets a non‑privileged user disrupt essential services by terminating critical processes, effectively creating a denial‑of‑service vector or indirect privilege escalation. The weakness is identified as CWE‑862 (Missing Authorization).
Affected Systems
The vulnerability affects SELinux Project’s policycoreutils, specifically the seunshare component. All releases through version 3.10 are impacted. Users of policycoreutils 3.10 or earlier are at risk.
Risk and Exploitability
The CVSS score of 6.8 indicates moderate severity, and the EPSS score of less than 1% reflects a low probability of exploitation. The flaw is not listed in the CISA KEV catalog. Exploitation requires a local user already able to run in an unined context; the attacker could then issue a killall command targeting root‑owned processes. Consequently, while the potential impact is significant for targeted systems, the likelihood of exploitation in the wild remains low.
OpenCVE Enrichment