CVE-2026-4878 on Cyberus Linux 26.05
Aliases: CVE-2026-4878
Packages: libcap
Status: Plausible
Advisory Information
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the
cap_set_file()function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.
Updates
2026-09-17 00:05 CEST
Metadata changes:
- Status for package
libcap: “Plausible”
2026-09-16 18:16 CEST
Metadata changes:
- Status for package
libcap: “New”
(Amended on: 2026-09-17 00:05 CEST)