GHSA-c85p-55wv-w2q5HighCVSS 8.8

A flaw was found in PipeWire, a multimedia server. This vulnerability allows an attacker to...

Published
July 16, 2026
Last Modified
July 16, 2026

🔗 CVE IDs covered (1)

📋 Description

A flaw was found in PipeWire, a multimedia server. This vulnerability allows an attacker to escape sandboxed applications, such as Flatpak, by exploiting PipeWire's PulseAudio compatibility layer. An attacker with minimal permissions within a sandboxed environment can load a malicious library, leading to arbitrary code execution outside the sandbox and potential compromise of the user's system.

🔗 References (4)