Generated remediation guidance and an executive summary. No account required.
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. Prior to 3.1.0 and 2.3.8, the himmelblaud-tasks daemon, running as root, writes Kerberos cache files under /tmp/krb5cc_<uid> without symlink protections. Since commit 87a51ee, PrivateTmp is explicitly removed from the tasks daemon's systemd hardening, exposing it to the host /tmp. A local user can exploit this via symlink attacks to chown or overwrite arbitrary files, achieving local privilege escalation. This vulnerability is fixed in 3.1.0 and 2.3.8.
Use CWE-59, Himmelblau-Idm vendor hub and Himmelblau product page to widen CVE-2026-31979 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-31957, CVE-2025-54882 and CVE-2026-34397 for nearby disclosures in the same product family.