VYPR

rpm package

almalinux/kbd-legacy

pkg:rpm/almalinux/kbd-legacy

Vulnerabilities (1)

  • CVE-2026-72693HigAug 11, 2026
    affected < 2.6.4-8.el10_2fixed 2.6.4-8.el10_2

    `openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage, the ownership test in `authenticate_user()` relies on `stat("/proc//fd/0")`. `stat()` on `/proc//fd