VYPR
High severity7.8OSV Advisory· Published Jul 4, 2024· Updated Apr 15, 2026

CVE-2024-39934

CVE-2024-39934

Description

Robotmk before 2.0.1 allows a local user to escalate privileges (e.g., to SYSTEM) if automated Python environment setup is enabled, because the "shared holotree usage" feature allows any user to edit any Python environment.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Elabit/RobotmkOSV2 versions
    stable, v2.0.0, v2.0.0-alpha, …+ 1 more
    • (no CPE)range: stable, v2.0.0, v2.0.0-alpha, …
    • (no CPE)range: <2.0.1

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.