CVE-2026-59674: LPE from suricata user to root due to chown in %post in suricata packaging
Published Jul 14, 2026
·Updated
A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed suricata package allows the suricata user to escalate to root.
This issue affects openSUSE Tumbleweed: from ? before 8.0.5-2.1; openSUSE Tumbleweed: from ? before 8.0.5-2.1.
Affected Software
2 affected components
openSUSE Tumbleweed<8.0.5-2.1
suricata<8.0.5-2.1
Event History
Jul 14, 2026
CVE Published
via MITRE·07:32 AM
Data Sourced
via MITRE·07:32 AM
DescriptionWeakness
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-59674?
CVE-2026-59674 has a severity rating of high, with a CVSS score of 7.1.
2
What systems are affected by CVE-2026-59674?
CVE-2026-59674 affects openSUSE Tumbleweed versions prior to 8.0.5-2.1.
3
What type of vulnerability is CVE-2026-59674?
CVE-2026-59674 is a UNIX Symbolic Link (Symlink) Following vulnerability that allows local privilege escalation.
4
How do I fix CVE-2026-59674?
To fix CVE-2026-59674, you should update the suricata package to version 8.0.5-2.1 or later.
5
What impact does CVE-2026-59674 have?
CVE-2026-59674 allows the suricata user to escalate privileges to root, potentially compromising the system.