Vulnerability Description
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arbitrary root-owned files, This issue affects policycoreutils through 3.10.
Related Weaknesses (CWE)
References
- https://bugzilla.suse.com/show_bug.cgi?id=1268256
- https://security.opensuse.org/2026/07/15/selinux-seunshare.html
FAQ
What is CVE-2026-59676?
CVE-2026-59676 is a documented vulnerability. A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running in the unconfined SELinux domain to delete arb...
How severe is CVE-2026-59676?
CVSS scoring is not yet available for CVE-2026-59676. Check NVD for updates.
Is there a patch for CVE-2026-59676?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.