{"id":"AZL-96612","summary":"CVE-2026-73584 affecting package sblim-sfcb 1.4.9-20","details":"A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during privileged instance migration by manipulating a temporary file in the `/tmp` directory. By repeatedly recreating a symbolic link, the attacker can redirect privileged output to an arbitrary file. This can lead to privileged file corruption or a denial of service (DoS) on the system.","modified":"2026-09-20T05:32:18Z","published":"2026-08-13T13:19:18Z","upstream":["CVE-2026-73584"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-73584"}],"affected":[{"package":{"name":"sblim-sfcb","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/sblim-sfcb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"1.4.9-20"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-96612.json"}}],"schema_version":"1.9.0"}