CVE-2026-55978: Improper access control vulnerability in CatchPulse
Published Aug 6, 2026
·Updated
An improper access control vulnerability in CatchPulse could allow a non-administrative local attacker to connect to an unrestricted kernel filter communication port and bypass CatchPulse's security policy enforcement.
Affected Software
1 affected component
CatchPulse
Event History
Aug 6, 2026
CVE Published
via MITRE·09:18 AM
Data Sourced
via MITRE·09:18 AM
RemedyDescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-55978?
CVE-2026-55978 has a severity rating of high, with a score of 8.4.
2
How do I fix CVE-2026-55978?
To mitigate CVE-2026-55978, ensure that only authorized administrative users can access the kernel filter communication port.
3
What impact does CVE-2026-55978 have on CatchPulse?
CVE-2026-55978 allows non-administrative local attackers to bypass security policy enforcement in CatchPulse.
4
Who is affected by CVE-2026-55978?
Local attackers with non-administrative privileges are affected by CVE-2026-55978 as they can exploit the improper access control.
5
When was CVE-2026-55978 published?
CVE-2026-55978 was published on August 6, 2026.