CVE-2025-46805

Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when installed setuid-root.
Configurations

No configuration.

History

28 May 2025, 15:01

Type Values Removed Values Added
Summary
  • (es) La versión de Screen 5.0.0 y las versiones anteriores 4 tienen una ejecución TOCTOU que potencialmente permite enviar SIGHUP, SIGCONT a procesos privilegiados cuando se instala setuid-root.

26 May 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-26 14:15

Updated : 2025-05-28 15:01


NVD link : CVE-2025-46805

Mitre link : CVE-2025-46805

CVE.ORG link : CVE-2025-46805


JSON object : View

Products Affected

No product.

CWE
CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition