Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Ubuntu 25.10 libcap Important Escalation Risk CVE-2026-4878

Ubuntu Large Esm H500
libcap could be made to modify capabilities on arbitrary files.
==========================================================================
Ubuntu Security Notice USN-8193-1
April 21, 2026

libcap2 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 25.10
- Ubuntu 24.04 LTS
- Ubuntu 22.04 LTS

Summary:

libcap could be made to modify capabilities on arbitrary files.

Software Description:
- libcap2: POSIX 1003.1e capabilities library

Details:

Ali Raza discovered that libcap incorrectly handled file capability
updates. A local attacker could possibly use this issue to inject or strip
capabilities into arbitrary executables and escalate privileges.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 25.10
  libcap2                         1:2.75-7ubuntu2.2
  libcap2-bin                     1:2.75-7ubuntu2.2

Ubuntu 24.04 LTS
  libcap2                         1:2.66-5ubuntu2.4
  libcap2-bin                     1:2.66-5ubuntu2.4

Ubuntu 22.04 LTS
  libcap2                         1:2.44-1ubuntu0.22.04.3
  libcap2-bin                     1:2.44-1ubuntu0.22.04.3

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-8193-1
  CVE-2026-4878

Package Information:
  https://launchpad.net/ubuntu/+source/libcap2/1:2.75-7ubuntu2.2
  https://launchpad.net/ubuntu/+source/libcap2/1:2.66-5ubuntu2.4
  https://launchpad.net/ubuntu/+source/libcap2/1:2.44-1ubuntu0.22.04.3

Ubuntu 25.10 libcap Important Escalation Risk CVE-2026-4878

ubuntu
Calendar Grey April 21, 2026
Dist Ubuntu Esm H88
A local attacker could exploit libcap in Ubuntu to modify capabilities on files, prompting an important security update.
libcap could be made to modify capabilities on arbitrary files.

Summary

A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: libcap could be made to modify capabilities on arbitrary files. Software Description: - libcap2: POSIX 1003.1e capabilities library Details: Ali Raza discovered that libcap incorrectly handled file capability updates. A local attacker could possibly use this issue to inject or strip capabilities into arbitrary executables and escalate privileges.

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 libcap2 1:2.75-7ubuntu2.2 libcap2-bin 1:2.75-7ubuntu2.2 Ubuntu 24.04 LTS libcap2 1:2.66-5ubuntu2.4 libcap2-bin 1:2.66-5ubuntu2.4 Ubuntu 22.04 LTS libcap2 1:2.44-1ubuntu0.22.04.3 libcap2-bin 1:2.44-1ubuntu0.22.04.3 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-8193-1

CVE-2026-4878

Severity
important
Lowest
Low
Medium
High
Critical

Ubuntu Security Notice USN-8193-1

Package Information

https://launchpad.net/ubuntu/+source/libcap2/1:2.75-7ubuntu2.2 https://launchpad.net/ubuntu/+source/libcap2/1:2.66-5ubuntu2.4 https://launchpad.net/ubuntu/+source/libcap2/1:2.44-1ubuntu0.22.04.3

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here