CVE-2026-4878

ADVISORY - nist

Summary

A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the cap_set_file() function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unintended executables, leading to privilege escalation.

EPSS Score: 0.00011 (0.013)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Time-of-check Time-of-use (TOCTOU) Race Condition


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in