Impact
TeamViewer Full Client and Host for Linux contain a race condition in the Cloud Session Recording feature that leads to improper path validation. An attacker who is already authenticated locally can trigger this race condition and cause privileged file operations in locations that are not intended by the application. This flaw allows the attacker to create, modify, or delete arbitrary files with elevated privileges, exposing the system to data tampering, persistence, or damage to critical directories.
Affected Systems
The vulnerability affects TeamViewer Full Client and Host on Linux versions earlier than 15.82. Systems running these products are susceptible unless updated to the latest release from TeamViewer.
Risk and Exploitability
The CVSS score of 7 indicates a high severity for potential privilege escalation. While the EPSS score is not available, the lack of listing in the CISA KEV catalog suggests no known public exploitation yet. The likely attack vector is a local authenticated user who can manipulate the Cloud Session Recording function, and exploitation requires taking advantage of the race condition during path validation. Without patching, the flaw can enable local attackers to perform privileged file operations across the system.
OpenCVE Enrichment