PT-2026-34475 · Unknown · Uutils Coreutils

Zellic

·

Published

2026-04-22

·

Updated

2026-04-22

·

CVE-2026-35339

CVSS v3.1

5.5

Medium

AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions uutils coreutils (affected versions not specified)
Description The recursive mode (-R) of the chmod utility incorrectly handles exit codes when processing multiple files. The final return value is determined solely by the success or failure of the last file processed. This allows the command to return an exit code of 0 even if errors, such as 'Operation not permitted', occurred during the processing of previous files. Consequently, scripts relying on these exit codes may incorrectly assume the operation was successful while some files retain incorrect permissions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2026-35339

Affected Products

Uutils Coreutils