CVE-2015-3246Medium· 5.1▾ Midnight⚠ Exploited in the wildPoC availablelibuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an erro…
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 28.1 · likelihood 1.8 · exploitation 25
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 26.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
Federal remediation due Sep 9, 2026
7.1%
7.1% → 8.8%
Exploit-DB · 1 GitHub repo · Metasploit ×1 (last check)
Added to the CISA catalog on Aug 26, 2026. Federal remediation due Sep 9, 2026. View catalog ↗
libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the modification. NOTE: this issue can be combined with CVE-2015-3245 to gain privileges.
libuser <= 0.56.13-5libuser = 0.60-1libuser = 0.60-2libuser = 0.60-3libuser = 0.60-4libuser = 0.60-5libuser = 0.60-6Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2024-30088High· 7.0Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-31431High· 7.8In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in op…
CVE-2026-23950High· 8.8node-tar,a Tar for Node.js, has a race condition vulnerability in versions up to and including 7.5.3
CVE-2026-9796Medium· 6.5A flaw was found in Keycloak
CVE-2025-38352High· 7.8In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If an exiting non-autoreaping task has already passed exit_notify() and calls ha…
CVE-2026-29518High· 7.0Rsync versions before 3.4.3 contain a time-of-check to time-of-use (TOCTOU) race condition in daemon file handling that allows attackers to redirect file writes outside intended directories by replacing parent directory components with s…