A SUID root-owned binary in /home/xd/terminal/XDTerminal in International Data Casting (IDC) SFX2100 on Linux allows a local actor to potentially preform local privilege escalation depending on conditions of the system via execution of the affected SUID binary. This can be via PATH hijacking, symlink abuse or shared object hijacking.

Project Subscriptions

No data.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 05 Mar 2026 01:30:00 +0000

Type Values Removed Values Added
Description A SUID root-owned binary in /home/xd/terminal/XDTerminal in International Data Casting (IDC) SFX2100 on Linux allows a local actor to potentially preform local privilege escalation depending on conditions of the system via execution of the affected SUID binary. This can be via PATH hijacking, symlink abuse or shared object hijacking.
Title Multiple SUID Root Binaries in `xd` User Home Directory Leading to Potential Local Privilege Escalation
Weaknesses CWE-269
References
Metrics cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Gridware

Published:

Updated: 2026-03-05T01:18:58.502Z

Reserved: 2026-03-04T07:53:45.786Z

Link: CVE-2026-29123

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-03-05T02:16:51.530

Modified: 2026-03-05T02:16:51.530

Link: CVE-2026-29123

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses