Skip to content

CVE-2026-41992

CVE

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
July 6, 2026
Last Seen
September 8, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Two critical vulnerabilities were discovered in Gzip's gzexe utility and file handling. CVE-2026-41991 allows local attackers to overwrite arbitrary files via a predictable temporary file path. CVE-2026-41992 can lead to denial of service or exposure of sensitive information due to improper handling...

Oracle has released multiple security updates for its Linux distributions, addressing several critical vulnerabilities. Key updates include patches for CVE-2026-59090 and CVE-2026-18301 in GIMP, and multiple CVEs in FreeRDP, libssh, and Grafana. Affected systems include Oracle Linux 8, 9, and 10, wi...

Recent vulnerabilities in Gzip, discovered by Michał Majchrowicz, Marcin Wyczechowski, and Elias Hasas, affect systems using the gzexe utility. The vulnerabilities include CVE-2026-41991, where insecure temporary file creation could allow local attackers to overwrite arbitrary files, and CVE-2026-41...

Recent updates for SUSE Linux Micro address multiple vulnerabilities in cpio and gzip utilities. The cpio update, identified as SUSE-SU-2026:23355-1, fixes three CVEs: CVE-2026-66484, CVE-2026-66485, and CVE-2026-66486, which involve issues like improper sanitization and memory management, potential...

Public Exploits

Checking GitHub for proof-of-concept code…