Security Advisory

CVE-2026-41045

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-22 15:16:37
Last updated 2026-06-22 16:23:19
Assigner suse
CVSS score 8.1
State PUBLISHED

Description

A time-to-check-time-of-use in polkit authentication of qSnapper before version 1.3.3 allowed a local attacker to bypass qSnappers authentication mechanism and operate e.g. as root user.