Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-102729. PoCs published by Tavis Ormandy.
AI-analyzed exploit summary This advisory describes a vulnerability in Red Hat's seunshare utility, which allows unprivileged users to bypass the sticky bit on /tmp by mounting a new directory, potentially leading to privilege escalation or system damage. The example demonstrates how an attacker can manipulate temporary files used by setuid applications like ksu.
Description
RedHat Linux - Stickiness of /tmp
Exploits (1)
This advisory describes a vulnerability in Red Hat's seunshare utility, which allows unprivileged users to bypass the sticky bit on /tmp by mounting a new directory, potentially leading to privilege escalation or system damage. The example demonstrates how an attacker can manipulate temporary files used by setuid applications like ksu.