On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Go | Golang | * | 1.25.9 (excluding) |
| Go | Golang | 1.26.0 (including) | 1.26.2 (excluding) |
| Cryostat 4 on RHEL 9 | RedHat | cryostat/cryostat-storage-rhel9:4.1.1-7 | * |
| HawtIO HawtIO 4.4.0 | RedHat | rhbac-4-tech-preview/hawtio-rhel8-operator | * |
| Red Hat Ansible Automation Platform 2.5 for RHEL 8 | RedHat | receptor-0:1.6.5-1.el8ap | * |
| Red Hat Ansible Automation Platform 2.5 for RHEL 9 | RedHat | receptor-0:1.6.5-1.el9ap | * |
| Red Hat Ansible Automation Platform 2.6 for RHEL 10 | RedHat | receptor-0:1.6.5-1.el10ap | * |
| Red Hat Ansible Automation Platform 2.6 for RHEL 9 | RedHat | receptor-0:1.6.5-1.el9ap | * |
| Red Hat Enterprise Linux 10 | RedHat | golang-0:1.25.9-3.el10_1 | * |
| Red Hat Enterprise Linux 10 | RedHat | grafana-0:10.2.6-25.el10_1 | * |
| Red Hat Enterprise Linux 10 | RedHat | rhc-worker-playbook-0:0.2.3-5.el10_1 | * |
| Red Hat Enterprise Linux 10 | RedHat | yggdrasil-0:0.4.8-5.el10_1 | * |
| Red Hat Enterprise Linux 10 | RedHat | rhc-worker-playbook-0:0.2.7-3.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | git-lfs-0:3.7.1-4.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | grafana-0:10.2.6-26.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | opentelemetry-collector-0:0.144.0-2.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | grafana-pcp-0:5.3.0-5.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | golang-github-openprinting-ipp-usb-0:0.9.27-7.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | rhc-1:0.3.8-4.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | go-fdo-client-0:1.0.0-4.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | go-fdo-server-0:1.0.1-2.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | osbuild-composer-0:165.1-2.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | image-builder-0:52.1-1.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | yggdrasil-0:0.4.9-5.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | yggdrasil-worker-package-manager-0:0.2.3-7.el10_2 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | golang-0:1.25.9-1.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | gvisor-tap-vsock-6:0.8.5-2.el10_0.1 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | grafana-pcp-0:5.2.2-6.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | grafana-0:10.2.6-24.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | yggdrasil-0:0.4.7-4.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | golang-github-openprinting-ipp-usb-0:0.9.27-3.el10_0.4 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | rhc-worker-playbook-0:0.2.3-5.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | git-lfs-0:3.6.1-2.el10_0.4 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | opentelemetry-collector-0:0.144.0-2.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | osbuild-composer-0:134.1-7.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | rhc-1:0.3.2-4.el10_0 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | yggdrasil-worker-package-manager-0:0.2.3-6.el10_0 | * |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | host-metering-0:1.4.0-7.el7_9 | * |
| Red Hat Enterprise Linux 8 | RedHat | go-toolset:rhel8-8100020260422204008.a3795dee | * |
| Red Hat Enterprise Linux 8 | RedHat | grafana-0:9.2.10-30.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | grafana-pcp-0:5.1.1-14.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | rhc-1:0.2.5-7.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | git-lfs-0:3.4.1-10.el8_10 | * |
| Red Hat Enterprise Linux 9 | RedHat | golang-0:1.25.9-1.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | grafana-pcp-0:5.1.1-14.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | grafana-0:10.2.6-21.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | git-lfs-0:3.6.1-8.el9_7.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | git-lfs-0:3.7.1-4.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | grafana-pcp-0:5.1.1-15.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | grafana-0:10.2.6-22.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | opentelemetry-collector-0:0.144.0-2.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | rhc-1:0.2.7-6.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | osbuild-composer-0:165.1-2.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | image-builder-0:52.1-1.el9_8 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | opentelemetry-collector-0:0.144.0-2.el9_4 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | golang-0:1.25.9-1.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | opentelemetry-collector-0:0.144.0-2.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | git-lfs-0:3.6.1-2.el9_6.4 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | grafana-pcp-0:5.1.1-14.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | grafana-0:10.2.6-21.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | osbuild-composer-0:132.2-7.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | rhc-1:0.2.7-1.el9_6.4 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | gvisor-tap-vsock-6:0.8.5-2.el9_6.2 | * |
| Red Hat OpenStack Platform 17.1 for RHEL 9 | RedHat | collectd-libpod-stats-0:1.0.6-7.el9ost | * |
| Red Hat OpenStack Platform 17.1 for RHEL 9 | RedHat | golang-uber-multierr-0:1.5.0-2.el9ost | * |
| Red Hat OpenStack Platform 17.1 for RHEL 9 | RedHat | etcd-0:3.4.26-9.5.el9ost | * |
| Red Hat Satellite 6.16 for RHEL 8 | RedHat | dynflow-utils-0:1.6.3-1.1.el8sat | * |
| Red Hat Satellite 6.16 for RHEL 8 | RedHat | yggdrasil-worker-forwarder-0:0.0.3-5.el8sat | * |
| Red Hat Satellite 6.16 for RHEL 8 | RedHat | dynflow-utils-0:1.6.3-1.1.el8sat | * |
| Red Hat Satellite 6.16 for RHEL 8 | RedHat | yggdrasil-worker-forwarder-0:0.0.3-5.el8sat | * |
| Red Hat Satellite 6.16 for RHEL 9 | RedHat | dynflow-utils-0:1.6.3-1.1.el9sat | * |
| Red Hat Satellite 6.16 for RHEL 9 | RedHat | yggdrasil-worker-forwarder-0:0.0.3-5.el9sat | * |
| Red Hat Satellite 6.16 for RHEL 9 | RedHat | dynflow-utils-0:1.6.3-1.1.el9sat | * |
| Red Hat Satellite 6.16 for RHEL 9 | RedHat | yggdrasil-worker-forwarder-0:0.0.3-5.el9sat | * |
| Red Hat Satellite 6.18 for RHEL 9 | RedHat | dynflow-utils-0:2.0.1-1.el9sat | * |
| Red Hat Satellite 6.18 for RHEL 9 | RedHat | dynflow-utils-0:2.0.1-1.el9sat | * |
| Red Hat Satellite 6.19 for RHEL 9 | RedHat | dynflow-utils-0:2.0.1-1.el9sat | * |
| Red Hat Satellite 6.19 for RHEL 9 | RedHat | dynflow-utils-0:2.0.1-1.el9sat | * |
| Cluster Observability Operator 1.5.0 | RedHat | cluster-observability-operator/perses-rhel9:1781116652 | * |
| Custom Metric Autoscaler 2.19 | RedHat | custom-metrics-autoscaler/custom-metrics-autoscaler-adapter-rhel9:1780101236 | * |
| Logging Subsystem for Red Hat OpenShift 6.0 | RedHat | openshift-logging/logging-loki-rhel9:1781193075 | * |
| Logging Subsystem for Red Hat OpenShift 6.4 | RedHat | openshift-logging/logging-loki-rhel9:1780051809 | * |
| Multicluster Global Hub 1.3.4 | RedHat | multicluster-globalhub/multicluster-globalhub-agent-rhel9:1779210675 | * |
| Multicluster Global Hub 1.4.5 | RedHat | multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1779579439 | * |
| Multicluster Global Hub 1.5.4 | RedHat | multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1778867753 | * |
| Multicluster Global Hub 1.6.2 | RedHat | multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1780167118 | * |
| Multicluster Global Hub 1.7.1 | RedHat | multicluster-globalhub/multicluster-globalhub-grafana-rhel9:1779925273 | * |
| Network Observability (NETOBSERV) 1.11.2 | RedHat | network-observability/network-observability-flowlogs-pipeline-rhel9:1778508248 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-kubevirt-velero-plugin-rhel9:1779243307 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-mustgather-rhel9:1779770049 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-rhel9-operator:1779847451 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-plugin-for-aws-rhel9:1779243113 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-plugin-for-gcp-rhel9:1779243915 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-plugin-for-legacy-aws-rhel9:1779243074 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-plugin-for-microsoft-azure-rhel9:1779243128 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-plugin-rhel9:1779243793 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-restic-restore-helper-rhel9:1779809597 | * |
| OpenShift API for Data Protection 1.4 | RedHat | oadp/oadp-velero-rhel9:1779809598 | * |
| OpenShift API for Data Protection 1.5 | RedHat | oadp/oadp-velero-rhel9:1779808027 | * |
| OpenShift Compliance Operator 1 | RedHat | compliance/openshift-compliance-operator-bundle:1781605005 | * |
| OpenShift Developer Tools and Services 1.6.2 | RedHat | source-to-image/source-to-image-rhel8:1780247935 | * |
| OpenShift Developer Tools and Services 1.6.2 | RedHat | source-to-image/source-to-image-rhel9:1780247727 | * |
| Red Hat Advanced Cluster Management for Kubernetes 2.15 | RedHat | rhacm2/volsync-rhel9:1777380373 | * |
| Red Hat Advanced Cluster Management for Kubernetes 2.16 | RedHat | rhacm2/volsync-rhel9:1777380410 | * |
| Red Hat Advanced Cluster Security for Kubernetes 4.10 | RedHat | advanced-cluster-security/rhacs-main-rhel8:1777976489 | * |
| Red Hat Advanced Cluster Security for Kubernetes 4.9 | RedHat | advanced-cluster-security/rhacs-main-rhel8:1777986630 | * |
| Red Hat Developer Hub 1.8 | RedHat | rhdh/rhdh-rhel9-operator:1779841292 | * |
| Red Hat Developer Hub 1.9 | RedHat | rhdh/rhdh-rhel9-operator:1777902709 | * |
| Red Hat Hardened Images | RedHat | golang1-26-main-1.26.2-1.hum1 | * |
| Red Hat Hardened Images | RedHat | golang1-25-main-1.25.9-1.hum1 | * |
| Red Hat Lightspeed (formerly Insights) for Runtimes 1 | RedHat | rh-lightspeed-runtimes/runtimes-inventory-rhel9-operator:1.0.3-1779996197 | * |
| Red Hat OpenShift Dev Spaces 3.28 | RedHat | devspaces/udi-rhel9:1779829736 | * |
| Red Hat OpenShift distributed tracing 3.9.3 | RedHat | rhosdt/tempo-rhel9:1776435680 | * |
| Red Hat OpenShift GitOps 1.2 | RedHat | openshift-gitops-1/dex-rhel9:1779284768 | * |
| Red Hat Quay 3.1 | RedHat | quay/quay-rhel8:1779822261 | * |
| Red Hat Quay 3.12 | RedHat | quay/quay-rhel8:1779811412 | * |
| Red Hat Quay 3.14 | RedHat | quay/quay-rhel8:1779689392 | * |
| Red Hat Quay 3.15 | RedHat | quay/quay-rhel8:1780891395 | * |
| Red Hat Quay 3.16 | RedHat | quay/quay-rhel9:1779204086 | * |
| Red Hat Quay 3.17 | RedHat | quay/quay-rhel9:1779922205 | * |
| Red Hat Quay 3.9 | RedHat | quay/quay-rhel8:1779811473 | * |
| Red Hat Trusted Artifact Signer 1.3 | RedHat | rhtas/gitsign-rhel9:1780052587 | * |
| Golang-1.10 | Ubuntu | esm-infra/xenial | * |
| Golang-1.13 | Ubuntu | esm-apps/xenial | * |
| Golang-1.18 | Ubuntu | esm-apps/xenial | * |
| Golang-1.6 | Ubuntu | esm-infra/xenial | * |