CVE-2025-46802
Temporary chown() of users' TTY to mode 0666 allows PTY hijacking in screen
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.3EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
26 May 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session.
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Affected products
SUSE · SUSE Linux Enterprise Desktop 15 SP6SUSE · SUSE Linux Enterprise High Performance Computing 15 SP6SUSE · SUSE Linux Enterprise Micro 5.3SUSE · SUSE Linux Enterprise Micro 5.4SUSE · SUSE Linux Enterprise Micro 5.5SUSE · SUSE Linux Enterprise Module for Basesystem 15 SP6SUSE · SUSE Linux Enterprise Server 15 SP6SUSE · SUSE Linux Enterprise Server for SAP Applications 15 SP6Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →