CVE-2025-5962

7.7

Red Hat · Lightspeed

A flaw in the Lightspeed history service allows local, unprivileged users to access and manipulate the chat history of other users, potentially leading to unauthorized command execution.

Executive summary

A vulnerability in the Red Hat Lightspeed history service allows local unprivileged users to manipulate chat history, posing a risk of unauthorized command execution through social engineering.

Vulnerability

This vulnerability involves improper access control (CWE-284) within the inter-process communication mechanism of the Lightspeed history service, which can be triggered by an unprivileged local user.

Business impact

The ability for a local attacker to inject, view, or delete chat history poses a significant risk to organizational integrity and security. By manipulating chat logs, an attacker can deceive other users into executing malicious commands, which may result in privilege escalation or the unauthorized execution of system operations. With a CVSS score of 7.7, this vulnerability is classified as High severity, indicating that the potential for internal compromise is substantial if local access is achieved.

Remediation

Immediate Action: Update the affected systems to the fixed versions: Red Hat Enterprise Linux 10 (0:0.3.1-6.el10_0 or later) and Red Hat Enterprise Linux 9 (0:0.3.1-6.el9_6 or later).

Proactive Monitoring: Review system logs for unusual inter-process communication patterns or unauthorized access attempts targeting the Lightspeed service.

Compensating Controls: Restrict local user access to the system and ensure that only authorized personnel have the ability to execute commands on the host where the Lightspeed service is running.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

Given the severity of the potential impact on user commands and system integrity, administrators should prioritize applying the provided Red Hat security updates. Prompt patching of the Lightspeed service is essential to eliminate the risk of local command injection and social engineering attacks within the development environment.

More Red Hat CVEs

Sources

Originally found and disclosed by Red Hat would like to thank Jon Weiser (RedHat) and Oleg Sushchenko (RedHat) for reporting this issue., per the CVE Program record.