CVE-2026-76642

Source
https://cve.org/CVERecord?id=CVE-2026-76642
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-76642.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-76642
Aliases
  • GHSA-m25x-3hj9-m26f
Downstream
Published
2026-09-03T10:54:08Z
Modified
2026-09-09T03:47:15Z
Severity
  • 8.5 (High) CVSS_V4 - CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N CVSS Calculator
Summary
util-linux libmount Privilege Escalation via Failed Mount Helper
Details

util-linux versions through 2.41.5 and 2.42.2 fail to check mount helper exit status before running post-mount hooks, allowing unprivileged users to execute privileged operations on pre-existing filesystems. Attackers can exploit X-mount.idmap or X-mount.owner hooks to clone filesystems with inherited suid bits or modify target inode permissions after a helper fails, achieving privilege escalation.

Database specific
{
    "cna_assigner":  "VulnCheck",
    "cwe_ids":  [
        "CWE-390"
    ],
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/76xxx/CVE-2026-76642.json"
}
References

Affected packages

Git / github.com/util-linux/util-linux

Affected ranges

Type
GIT
Repo
https://github.com/util-linux/util-linux
Events
Database specific
Show details
{
    "extracted_events":  [
        {
            "introduced":  "2.39"
        },
        {
            "fixed":  "2.41.6"
        },
        {
            "introduced":  "2.42"
        },
        {
            "fixed":  "2.42.3"
        }
    ],
    "source":  "AFFECTED_FIELD"
}

Affected versions

v2.*
v2.41
v2.41-rc1
v2.41-rc2
v2.41.1
v2.41.2
v2.41.2-rc1
v2.41.3
v2.41.4
v2.41.5
v2.42
v2.42-rc1
v2.42-rc2
v2.42-start
v2.42.1
v2.42.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-76642.json"