Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-59676

Опубликовано: 23 июл. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.

РелизСтатусПримечание
devel

not-affected

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

esm-apps/resolute

not-affected

jammy

needs-triage

noble

needs-triage

resolute

not-affected

3.9-2
upstream

released

3.7-1

Показывать по

EPSS

Процентиль: 0%
0.00087
Низкий

Связанные уязвимости

CVSS3: 5.3
redhat
10 дней назад

A flaw was found in policycoreutils through 3.10 in seunshare. A TOCTOU race lets a local user running in an unconfined SELinux domain delete arbitrary root-owned files. Removing critical system files can cause denial of service; integrity impact is limited to unauthorized deletion.

nvd
10 дней назад

A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.

msrc
9 дней назад

Local File Deletion Attack Vector in rm_rf() in seunshare

debian
10 дней назад

A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in s ...

github
10 дней назад

A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.

EPSS

Процентиль: 0%
0.00087
Низкий