CVE-2025-5791

Published
View on NVD ↗
CVSS v3
7.1
HIGH
CVSS v2
N/A
Affected
2
PROJECTS

Description

A flaw was found in the user's crate for Rust. This vulnerability allows privilege escalation via incorrect group listing when a user or process has fewer than exactly 1024 groups, leading to the erroneous inclusion of the root group in the access list.

Library for accessing Unix users and groups
Crates.ioCrates.io
16.6M
Library for Unix users and groups in Rust.
GitHubGitHub
103