{"id":"CVE-2026-53940","published":"2026-09-21T16:17:09.010","lastModified":"2026-09-21T19:17:06.670","description":"Conda is a system-level binary package and environment manager that runs on major operating systems and platforms. Prior to 26.5.2, parse_entry_point_def in conda/common/path/python.py accepted an unvalidated entry-point command from a noarch:python package's info/link.json metadata. CreatePythonEntryPointAction in conda/core/path_actions.py interpolated that command into target_short_path, and PrefixPathAction.target_full_path joined it to the installation prefix without verifying that the result remained under the intended bin or Scripts directory. create_python_entry_point in conda/gateways/disk/create.py then wrote an executable wrapper to the resulting path. A malicious package could use path separators, traversal segments, or an absolute command path to write outside the prefix or overwrite another in-prefix entry point during default install and environment transactions. Out-of-prefix writes require the target parent directory to exist, while an overwritten entry point can execute attacker-controlled Python when later invoked with the installing user's privileges. This issue is fixed in version 26.5.2.","cvssScore":8.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","cwes":["CWE-22","CWE-73"],"vendors":[],"products":[],"references":[{"url":"https://github.com/conda/conda/commit/3987c86ccd5527177e96b48bd4dc1777dd2c9baa","tags":[]},{"url":"https://github.com/conda/conda/pull/16168","tags":[]},{"url":"https://github.com/conda/conda/releases/tag/26.5.2","tags":[]},{"url":"https://github.com/conda/conda/security/advisories/GHSA-9m8m-c4j3-rj2c","tags":[]},{"url":"https://github.com/conda/conda/security/advisories/GHSA-9m8m-c4j3-rj2c","tags":[]}],"exploitRefs":[{"url":"https://github.com/conda/conda/commit/3987c86ccd5527177e96b48bd4dc1777dd2c9baa","tags":[]},{"url":"https://github.com/conda/conda/pull/16168","tags":[]},{"url":"https://github.com/conda/conda/releases/tag/26.5.2","tags":[]},{"url":"https://github.com/conda/conda/security/advisories/GHSA-9m8m-c4j3-rj2c","tags":[]},{"url":"https://github.com/conda/conda/security/advisories/GHSA-9m8m-c4j3-rj2c","tags":[]}],"hasPoc":true,"ai":{"summary":"The flaw allows a malicious package to write executable files outside the intended directory or overwrite existing entry points, leading to potential code execution with user privileges.","exploitability":"Exploitation requires a vulnerable version of Conda and a malicious noarch:python package; preconditions include an unpatched installation and user interaction during package installation.","blast_radius":"If exploited, the issue could lead to unauthorized code execution, potentially compromising system security and integrity.","remediation":"Update Conda to version 26.5.2 or later to mitigate this vulnerability.","tags":["rce","code-execution","package-management","patch-recommended"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-22T06:04:02.729Z"}}