A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files,
This issue affects policycoreutils through 3.10.
Metrics
Affected Vendors & Products
References
History
Thu, 23 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Jul 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Selinux Project
Selinux Project selinux |
|
| Vendors & Products |
Selinux Project
Selinux Project selinux |
Thu, 23 Jul 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10. | |
| Title | Local File Deletion Attack Vector in rm_rf() in seunshare | |
| Weaknesses | CWE-367 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: suse
Published:
Updated: 2026-07-23T14:02:37.379Z
Reserved: 2026-07-06T11:59:28.118Z
Link: CVE-2026-59676
Updated: 2026-07-23T14:02:34.215Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-23T08:15:03Z