Security Risk Category

Unix Domain Sockets Security Risks

Published vulnerability pages connected to Unix Domain Sockets. Each page keeps one canonical URL and focused remediation guidance.

5 published Unix Domain Sockets risks

Unix Domain Sockets risks

Showing 1–5 of 5 published risks.

high

CVE-2026-55626 xrdp vulnerability

xrdp is an open source RDP server. In versions 0.10.6 and prior, when an authenticated user session is initialized using the Xvnc backend over UNIX domain sockets, the Xvnc process is launched with insufficient authentication mechanisms. A local authenticated attacker could exploit this vulnerability to bypass intended session isolation, allowing them to unauthorizedly view or control the active desktop sessions of other users on the same system. Users using other backends, such as xorgxrdp or Xvnc over TCP sockets, are not affected. This issue has been fixed in version 0.10.6.1.

CVE-2026-55626authentication-bypassunix-domain-sockets

Updated Jul 21, 2026

medium

CVE-2026-47128 nono vulnerability

nono is software that allows users to run AI agents in a zero-latency sandbox. Prior to version 0.55.0, the nono Landlock/seccomp policies allow access to local Unix domain sockets (concrete and abstract). This allows an easy sandbox escape by talking to the per-user systemd dbus socket. Version 0.55.0 patches the issue.

CVE-2026-47128authorization-bypassunix-domain-sockets

Updated Jul 21, 2026

highEPSS 0.005

CoreWCF Net Framing Premature EOF CPU Denial of Service Vulnerability

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, an unauthenticated remote attacker that can reach a NetTcpBinding, NetNamedPipeBinding, or UnixDomainSocketBinding endpoint can trigger premature EOF handling in the CoreWCF net.tcp, net.pipe, or net.uds framing handshake and pin one server thread-pool worker at full CPU per connection. This issue is fixed in versions 1.8.1 and 1.9.1.

CVE-2026-54772dotnetwindowsdenial-of-serviceunix-domain-sockets

Updated Jul 10, 2026

mediumEPSS 0.001

CoreWCF Unix Domain Socket PosixIdentity Security Upgrade Bypass Vulnerability

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, a CoreWCF service hosted on Unix Domain Sockets with PosixIdentity client credentials can accept connections that skip the application/unixposix stream upgrade before dispatching messages, bypassing framing-layer identity checks in UnixPosixIdentitySecurityUpgradeProvider. This issue is fixed in versions 1.8.1 and 1.9.1.

CVE-2026-54776dotnetwindowsauthentication-bypassunix-domain-sockets

Updated Jul 10, 2026

mediumEPSS 0.001

CoreWCF Unix Domain Socket POSIX Identity Race Condition Vulnerability

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF UnixDomainSocket POSIX peer identity resolution uses non-reentrant getpwuid and getgrgid calls, allowing concurrent connections to attribute one connection's identity to another or crash the host process under contention. This issue is fixed in versions 1.8.1 and 1.9.1.

CVE-2026-54778dotnetwindowsrace-conditionunix-domain-sockets

Updated Jul 10, 2026