
@speedyfriend433 @zeroxjf writetosymlinked, it fixed , seem did you try with CVE-2025-27591, thanks for your work
Post summary
The user notes that CVE-2025-27591 has been fixed, with no additional exploitation or technical details provided.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
A privilege escalation vulnerability existed in the Below service prior to v0.9.0 due to the creation of a world-writable directory at /var/log/below. This could have allowed local unprivileged users to escalate to root privileges through symlink attacks that manipulate files such as /etc/shadow.
Priority
LOW
Exploitation
NONE
PoC
YES
Patch
AVAILABLE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.

@speedyfriend433 @zeroxjf writetosymlinked, it fixed , seem did you try with CVE-2025-27591, thanks for your work
Post summary
The user notes that CVE-2025-27591 has been fixed, with no additional exploitation or technical details provided.
1 of 1 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| App | below | - | rust | - |