rpm package
almalinux/kbd-misc
pkg:rpm/almalinux/kbd-misc
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-72693 | Hig | 7.8 | < 2.6.4-8.el10_2 | 2.6.4-8.el10_2 | Aug 11, 2026 | `openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage, the ownership test in `authenticate_user()` relies on `stat("/proc//fd/0")`. `stat()` on `/proc//fd |
- affected < 2.6.4-8.el10_2fixed 2.6.4-8.el10_2
`openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage, the ownership test in `authenticate_user()` relies on `stat("/proc//fd/0")`. `stat()` on `/proc//fd