rpm package
opensuse/lact&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/lact&distro=openSUSE%20Tumbleweed
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-75038 | Med | 6.1 | < 0.10.0-1.1 | 0.10.0-1.1 | Aug 25, 2026 | UNIX symbolic link (symlink) following vulnerability in ilya-zlobintsev/LACT allows for local denial-of-service. This issue affects LACT: through 0.10.0. | |
| CVE-2026-75037 | Hig | 7.0 | < 0.10.0-1.1 | 0.10.0-1.1 | Aug 25, 2026 | Polkit Authentication Based on UnixProcessSubject / Peer PID in LACT on Linux allows an Authentication Bypass. This issue affects LACT through 0.10.0. Fixed by commit d0478fe42c2219454e272f96b1cbd29ab37ee566. |
- affected < 0.10.0-1.1fixed 0.10.0-1.1
UNIX symbolic link (symlink) following vulnerability in ilya-zlobintsev/LACT allows for local denial-of-service. This issue affects LACT: through 0.10.0.
- affected < 0.10.0-1.1fixed 0.10.0-1.1
Polkit Authentication Based on UnixProcessSubject / Peer PID in LACT on Linux allows an Authentication Bypass. This issue affects LACT through 0.10.0. Fixed by commit d0478fe42c2219454e272f96b1cbd29ab37ee566.