← All Advisories

CVE-2026-94422

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-94422

Key Details

CVECVE-2026-94422
CVSS Score / Version8.8 (High) / CVSS v3.1
Updated2026-10-02
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is none; user interaction is required; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high.
Affected productsRed Hat Red Hat Enterprise Linux 10, Red Hat Red Hat Enterprise Linux 9, and Fedora Fedora
Classified asCWE-290 (Authentication Bypass by Spoofing)

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
Red HatRed Hat Enterprise Linux 10
Red HatRed Hat Enterprise Linux 9
FedoraFedora
SubsystemsGeneral OT
SectorsMultiple

What to Know

An incorrect implementation of message filtering in xdg-dbus-proxy versions before 0.1.9 allows an attacker to bypass the intended message filtering on the D-Bus session bus by setting a reply serial number on non-reply messages. A malicious or compromised Flatpak app could use this to achieve arbitrary code execution outside its sandbox. xdg-dbus-proxy was designed to be part of the sandbox boundary for Flatpak, but it is released as a separate project and is sometimes used by other app frameworks such as Firejail. (NVD)

What to Do

Monitor Red Hat's and Fedora's web pages for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-94422
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-94422