A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.
References
Configurations
Configuration 1 (hide)
|
History
11 Jun 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jun 2026, 18:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jun 2026, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
08 Jun 2026, 03:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
04 Jun 2026, 00:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
02 Jun 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 May 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 May 2026, 08:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
26 May 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
20 May 2026, 05:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
20 May 2026, 04:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
19 May 2026, 23:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
19 May 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
07 May 2026, 22:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
06 May 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
04 May 2026, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
30 Apr 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
30 Apr 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
28 Apr 2026, 00:41
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:4.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* cpe:2.3:a:libcap_project:libcap:-:*:*:*:*:*:*:* |
|
| References | () https://access.redhat.com/errata/RHSA-2026:7473 - Vendor Advisory | |
| References | () https://access.redhat.com/security/cve/CVE-2026-4878 - Vendor Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2447554 - Permissions Required | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2451615 - Issue Tracking, Vendor Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2026/04/07/14 - Mailing List, Third Party Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2026/04/07/4 - Mailing List, Third Party Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2026/04/08/9 - Mailing List, Third Party Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2026/04/09/5 - Exploit, Mailing List, Third Party Advisory | |
| References | () http://www.openwall.com/lists/oss-security/2026/04/09/6 - Exploit, Mailing List, Third Party Advisory | |
| First Time |
Redhat
Redhat enterprise Linux Libcap Project libcap Redhat openshift Container Platform Libcap Project |
25 Apr 2026, 02:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
09 Apr 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-09 16:16
Updated : 2026-06-11 10:16
NVD link : CVE-2026-4878
Mitre link : CVE-2026-4878
CVE.ORG link : CVE-2026-4878
JSON object : View
Products Affected
libcap_project
- libcap
redhat
- openshift_container_platform
- enterprise_linux
CWE
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
