https://seclists.org/oss-sec/2026/q2/48: libcap-2.77 (since libcap-2.04) has TOCTOU privilege escalation issue
Published Apr 8, 2026
·Updated
Affected Software
1 affected component
libcap libcap>=2.04<=2.77
Frequently Asked Questions
1
What is the severity of CVE-2026-XXXX?
The severity of CVE-2026-XXXX is classified as high due to its potential for privilege escalation.
2
How do I fix CVE-2026-XXXX?
To fix CVE-2026-XXXX, update to libcap version 2.78 or later where the issue is resolved.
3
What kind of vulnerability is CVE-2026-XXXX?
CVE-2026-XXXX is a TOCTOU (Time-of-Check to Time-of-Use) privilege escalation issue.
4
Which versions of libcap are affected by CVE-2026-XXXX?
CVE-2026-XXXX affects libcap versions 2.04 through 2.77.
5
Who is the vendor for libcap related to CVE-2026-XXXX?
The vendor for libcap related to CVE-2026-XXXX is Andrew G. Morgan.