CVE-2026-18157

Discovered by AISLEPUBLISHEDCWE-88

Description

A flaw was found in yggdrasil-worker-package-manager. A local attacker with existing access to the system could exploit an argument injection vulnerability in the APT backend. This allows specially crafted package names, which begin with a hyphen, to be misinterpreted as command options by apt-get. Successful exploitation could lead to remote code execution (RCE) with root privileges, enabling the attacker to fully compromise the system's integrity, confidentiality, and availability.

CVSS Base Scores

CVSS v3.1(Primary)
7.8

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionStatus
RedHatInsightsyggdrasil-worker-package-manager0affected
RedHatInsightsyggdrasil-worker-package-manager0.2.0
Red HatRed Hat Enterprise Linux 100affected
Red HatRed Hat Enterprise Linux 100.2.0

Credits

  • Red Hat would like to thank AISLE Research for reporting this issue.

References