CVE-2026-41051: Suse Opensuse Tumbleweed

Medium severity, CVSS 5.0. EPSS: 0.1% chance of exploitation in the next 30 days.

csync2 uses insecure temporary directories when compiled with C99 or later, allowing for TOCTOU style attacks on the temporary directories.

Affected products

  • Suse Opensuse Tumbleweed

Published 2026-05-13. Last modified 2026-06-17.