A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability inĀ cosmic-greeter can allow an attacker to regain privileges that should have been dropped and abuse them in the racy checking logic.
This issue affects cosmic-greeter before https://github.Com/pop-os/cosmic-greeter/pull/426.
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-25704 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-03-30 08:16
Updated : 2026-03-30 13:26
NVD link : CVE-2026-25704
Mitre link : CVE-2026-25704
CVE.ORG link : CVE-2026-25704
JSON object : View
Products Affected
No product.
