A flaw was found in the users crate for Rust. This vulnerability allows privilege escalation via incorrect group listing when a user or process has fewer than exactly 1024 groups, leading to the erroneous inclusion of the root group in the access list.
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Red Hat OpenShift sandboxed containers 1.1 | RedHat | registry.redhat.io/openshift-sandboxed-containers/osc-rhel9-operator:sha256:defd993caf39258bfa91b92c800b6ea907765da8ff826c451e73695367766329 | * |
Rust-users | Ubuntu | oracular | * |