MEDIUMVulnerability

CVE-2026-4878

A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.

Properties

severity
MEDIUM
score
6.7
cve_id
CVE-2026-4878
vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
published_at
2026-04-09T16:16:31.987
last_modified
2026-08-10T13:19:48.283

Related Entities (7)

HAS_WEAKNESS (1)

[Weakness]Time-of-check Time-of-use (TOCTOU) Race Condition

DESCRIBED_BY (1)

[Source]NVD

AFFECTS_PRODUCT (5)

[Product]
[Product]
[Product]
[Product]
[Product]

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-4878 — Ninja Signal Threat Intelligence | Ninja Signal