CVE-2026-29124: Multiple SUID Root Binaries in `monitor` User Home Directory Leading to Potential Local Privilege Escalation
Multiple SUID root-owned binaries are found in /home/monitor/terminal, /home/monitor/kore-terminal, /home/monitor/IDE-DPack/terminal-dpack, and /home/monitor/IDE-DPack/terminal-dpack2 in International Data Casting (IDC) SFX2100 Satellite Receiver, which may lead to local privlidge escalation from the monitor user to root
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-29124?
CVE-2026-29124 is considered a high-severity vulnerability due to the potential for local privilege escalation.
How do I fix CVE-2026-29124?
To fix CVE-2026-29124, you should remove the SUID bits from the affected binaries or restrict access to the monitor user's home directory.
What are the affected systems for CVE-2026-29124?
The affected system for CVE-2026-29124 is the International Data Casting (IDC) SFX2100 Satellite Receiver.
How can CVE-2026-29124 be exploited?
CVE-2026-29124 can be exploited by a local user to execute code with elevated privileges using the SUID root binaries.
What is the impact of CVE-2026-29124?
The impact of CVE-2026-29124 includes unauthorized access and control over system resources, potentially compromising the entire system.