Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4355 articles · 196337 vulns · 36/41 feeds (7d)
← Back to list
7.1
CVE-2026-54371PATCHED
gnu · attr

attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr

Description

attr before version 2.6.0 contains a symlink traversal vulnerability in the getfattr and setfattr utilities that allows local attackers to escalate privileges by replacing a pathname component with a symbolic link during directory hierarchy traversal. Attackers who control a pathname component can redirect getfattr and setfattr operations to arbitrary files by substituting a symlink, leading to local privilege escalation when getfattr or setfattr is invoked by a privileged process over an attacker-controlled path.

Affected Products

VendorProductVersions
gnuattr0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
red hatred hat enterprise linuxcert_advisory90%
resfresf rocky linuxcert_advisory90%

References

  • https://cgit.git.savannah.nongnu.org/cgit/attr.git/commit/?id=c440855d6b33446edf4b5eb1a2d892281f15a99b(patch)
  • https://cgit.git.savannah.nongnu.org/cgit/attr.git/commit/?id=49f79e947270f06940b9100fa638f85dddc4aa7f(issue-tracking)
  • https://www.vulncheck.com/advisories/attr-symlink-traversal-privilege-escalation-via-getfattr-setfattr(third-party-advisory)

Related News (4 articles)

Tier B
BSI Advisories4d ago
[NEU] [mittel] Red Hat Enterprise Linux (attr): Schwachstelle ermöglicht Privilegieneskalation
→ No new info (linked only)
Tier A
Microsoft MSRC54d ago
CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr
→ No new info (linked only)
Tier C
oss-security55d ago
Symlink Traversal Privilege Escalation via getfattr/setfattr, getfacl/setfacl/chacl, libacl
→ No new info (linked only)
Tier C
VulDB55d ago
CVE-2026-54371 | acl up to 2.5.x Pathname link following
→ No new info (linked only)
CVSS 3.17.1 NONE
CISA KEV❌ No
Actively exploited❌ No
Patch available
acl-2.4.0attr-2.6.0
CWECWE-59
PublishedJun 29, 2026
Last enriched55d agov3
Tags
CVE-2026-54371CVE-2026-54369CVE-2026-54370
Trending Score22
Source articles4
Independent4
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-41992EXP
Global Buffer Overflow in GNU gzip
Trending: 54
NONECVE-2026-77219
GNU Emacs < 31.0.91 Heap Over-Read via PBM/PPM/PGM Image Loader
Trending: 13
NONECVE-2026-66485
Uncontrolled Memory Allocation in GNU cpio
Trending: 8
NONECVE-2026-66484
Path Traversal in GNU cpio
Trending: 8
NONECVE-2026-66486
Improper Output Encoding in GNU cpio
Trending: 8

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jun 29, 2026
Discovered by ZDM
Jun 29, 2026
Updated: severity, patchAvailable, tags
Jun 29, 2026
Updated: cweIds, patchAvailable, tags
Jun 29, 2026
Patch Available
Aug 19, 2026

Version History

v3
Last enriched 55d ago
v3Tier C55d ago

Added CWE-367, updated patch availability to acl-2.4.0 and attr-2.6.0, and included additional CVE tags.

cweIdspatchAvailabletags
via oss-security
v2Tier C55d ago

Updated severity to CRITICAL, noted no exploit available, and added new CVE ID.

severitypatchAvailabletags
via VulDB
v155d ago

Initial creation