<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>TUBITAK BILGEM - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/vendors/tubitak-bilgem/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Fri, 11 Sep 2026 17:14:06 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/vendors/tubitak-bilgem/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Privilege Escalation Vulnerability in Pardus-software</title><link>https://feed.craftedsignal.io/briefs/2026-09-cve-2026-8303-pardus/</link><pubDate>Fri, 11 Sep 2026 17:14:06 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-cve-2026-8303-pardus/</guid><description>CVE-2026-8303 is an incorrect privilege assignment vulnerability in Pardus-software versions prior to 1.0.5 that allows local attackers to perform privilege escalation.</description><content:encoded><![CDATA[<p>CVE-2026-8303 is an incorrect privilege assignment vulnerability identified in the Pardus-software suite developed by the TUBITAK BILGEM Software Technologies Research Institute. The vulnerability exists in all versions prior to 1.0.5 and allows a local, authenticated attacker to escalate their privileges on an affected Pardus system. This flaw stems from a failure to correctly enforce access controls during privilege assignment, potentially allowing a non-privileged user to execute arbitrary commands or modify system configurations with higher-level permissions. Defenders should prioritize updating instances of Pardus-software to version 1.0.5 or later to mitigate the risk of local privilege escalation.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability enables a local attacker to escalate privileges, potentially gaining full control over the underlying Pardus operating system. This could lead to unauthorized data access, system disruption, or the installation of persistent malicious backdoors within the victim environment.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade all instances of Pardus-software to version 1.0.5 or later immediately.</li>
<li>Implement strict auditing of user privilege changes and account modifications on systems running Pardus-software.</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>privilege-escalation</category><category>linux</category></item></channel></rss>