Integer Overflow Vulnerability in Cockpit Affects User Login Records
CVE-2026-91142
3.6LOW
What is CVE-2026-91142?
A flaw in Cockpit's do_lastlog() function allows a low-privileged authenticated user to exploit an integer overflow in the offset calculation for lastlog entries. When executed on ILP32 (Integer, Long, Pointer 32-bit) environments, this vulnerability can be triggered with a specially crafted large User ID (UID). As a result, the calculated offset may wrap around, enabling unauthorized access to read and write operations on other users' lastlog records. This flaw poses a risk of disclosing or altering sensitive login accounting information, potentially impacting user privacy and security.
References
CVSS V3.1
Score:
3.6
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
This issue was discovered by Found by AISLE in partnership with Red Hat.