Количество 19
Количество 19
CVE-2026-4878
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.
CVE-2026-4878
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.
CVE-2026-4878
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.
CVE-2026-4878
Libcap: libcap: privilege escalation via toctou race condition in cap_set_file()
CVE-2026-4878
A flaw was found in libcap. A local unprivileged user can exploit a Ti ...
openSUSE-SU-2026:20613-1
Security update for libcap
SUSE-SU-2026:1433-1
Security update for libcap
SUSE-SU-2026:1432-1
Security update for libcap
RLSA-2026:19346
Important: libcap security update
RLSA-2026:19130
Important: libcap security update
RLSA-2026:13285
Important: libcap security update
RLSA-2026:12441
Important: libcap security update
RLSA-2026:12423
Important: libcap security update
ELSA-2026-19346
ELSA-2026-19346: libcap security update (IMPORTANT)
ELSA-2026-19130
ELSA-2026-19130: libcap security update (IMPORTANT)
ELSA-2026-13285
ELSA-2026-13285: libcap security update (IMPORTANT)
ELSA-2026-12441
ELSA-2026-12441: libcap security update (IMPORTANT)
ELSA-2026-12423
ELSA-2026-12423: libcap security update (IMPORTANT)
BDU:2026-08666
Уязвимость функции cap_set_file() библиотеки libcap, позволяющая нарушителю повысить свои привилегии
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-4878 A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation. | CVSS3: 6.7 | 0% Низкий | 4 месяца назад | |
CVE-2026-4878 A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation. | CVSS3: 6.7 | 0% Низкий | 4 месяца назад | |
CVE-2026-4878 A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation. | CVSS3: 6.7 | 0% Низкий | 4 месяца назад | |
CVE-2026-4878 Libcap: libcap: privilege escalation via toctou race condition in cap_set_file() | CVSS3: 6.7 | 0% Низкий | 4 месяца назад | |
CVE-2026-4878 A flaw was found in libcap. A local unprivileged user can exploit a Ti ... | CVSS3: 6.7 | 0% Низкий | 4 месяца назад | |
openSUSE-SU-2026:20613-1 Security update for libcap | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:1433-1 Security update for libcap | 0% Низкий | 4 месяца назад | ||
SUSE-SU-2026:1432-1 Security update for libcap | 0% Низкий | 4 месяца назад | ||
RLSA-2026:19346 Important: libcap security update | 0% Низкий | 2 месяца назад | ||
RLSA-2026:19130 Important: libcap security update | 0% Низкий | 2 месяца назад | ||
RLSA-2026:13285 Important: libcap security update | 0% Низкий | 3 месяца назад | ||
RLSA-2026:12441 Important: libcap security update | 0% Низкий | 3 месяца назад | ||
RLSA-2026:12423 Important: libcap security update | 0% Низкий | 3 месяца назад | ||
ELSA-2026-19346 ELSA-2026-19346: libcap security update (IMPORTANT) | 0% Низкий | около 1 месяца назад | ||
ELSA-2026-19130 ELSA-2026-19130: libcap security update (IMPORTANT) | 0% Низкий | 17 дней назад | ||
ELSA-2026-13285 ELSA-2026-13285: libcap security update (IMPORTANT) | 0% Низкий | 3 месяца назад | ||
ELSA-2026-12441 ELSA-2026-12441: libcap security update (IMPORTANT) | 0% Низкий | 3 месяца назад | ||
ELSA-2026-12423 ELSA-2026-12423: libcap security update (IMPORTANT) | 0% Низкий | 3 месяца назад | ||
BDU:2026-08666 Уязвимость функции cap_set_file() библиотеки libcap, позволяющая нарушителю повысить свои привилегии | CVSS3: 7 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу