A flaw was found in the users crate for Rust. This vulnerability allows privilege escalation via incorrect group listing when a user or process has fewer than exactly 1024 groups, leading to the erroneous inclusion of the root group in the access list.
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Red Hat OpenShift sandboxed containers 1.1 | RedHat | openshift-sandboxed-containers/osc-rhel9-operator:sha256:a6f29da891174e57fcfd131da7aa90c50459ba24164111b83120a1b91f2eabba | * |
Rust-users | Ubuntu | oracular | * |