CVE-2026-4878
EUVD-2026-2091009.04.2026, 16:16
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| libcap_project | libcap | - |
| redhat | openshift_container_platform | 4.0 |
| redhat | enterprise_linux | 8.0 |
| redhat | enterprise_linux | 9.0 |
| redhat | enterprise_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libcap-devel |
| ||||||||||||||||||||||
| libcap-progs |
| ||||||||||||||||||||||
| libcap2 |
| ||||||||||||||||||||||
| libcap2-32bit |
| ||||||||||||||||||||||
| libpsx2 |
|
Red Hat Enterprise Linux Releases
References