CVE-2026-41054: Suse Container Suse/sle-Micro-rancher/5.3:latest
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands such as `MAGIC_CHROOT`.
Affected products
- Suse Container Suse/sle-Micro-rancher/5.3:latest
- Suse Container Suse/sle-Micro-rancher/5.4:latest
- Suse Container Suse/sle-micro/5.5:latest
- Suse Image SLES15-SP4-SAP-Byos
- Suse Image SLES15-SP4-SAP-Byos-Azure
- Suse Image SLES15-SP4-SAP-Byos-EC2
- Suse Image SLES15-SP4-SAP-Byos-Gce
- Suse Image SLES15-SP4-SAP-Hardened
- Suse Image SLES15-SP4-SAP-Hardened-Byos
- Suse Image SLES15-SP4-SAP-Hardened-Byos-Azure
- Suse Image SLES15-SP4-SAP-Hardened-Byos-EC2
- Suse Image SLES15-SP4-SAP-Hardened-Byos-Gce
- Suse Image SLES15-SP4-SAP-Hardened-Gce
- Suse Suse Linux Enterprise Desktop 15 SP7
- Suse Suse Linux Enterprise High Performance Computing 15 SP4-Espos
- Suse Suse Linux Enterprise High Performance Computing 15 SP4-Ltss
- Suse Suse Linux Enterprise High Performance Computing 15 SP5-Espos
- Suse Suse Linux Enterprise High Performance Computing 15 SP5-Ltss
- Suse Suse Linux Enterprise High Performance Computing 15 SP7
- Suse Suse Linux Enterprise Micro 5.3
- Suse Suse Linux Enterprise Micro 5.4
- Suse Suse Linux Enterprise Micro 5.5
- Suse Suse Linux Enterprise Module For Basesystem 15 SP7
- Suse Suse Linux Enterprise Server 15 SP4-Ltss
- Suse Suse Linux Enterprise Server 15 SP5-Ltss
- and 9 more
Published 2026-05-20. Last modified 2026-07-24.