High severity7.1NVD Advisory· Published Jun 29, 2026· Updated Aug 11, 2026
CVE-2026-54369
CVE-2026-54369
Description
acl before version 2.4.0 contains a symlink traversal vulnerability in the libacl pathname-based functions acl_get_file(), acl_set_file(), acl_extended_file(), and acl_delete_def_file() that allows local attackers to escalate privileges by replacing any pathname component with a symbolic link. Attackers who control any component of a pathname processed by a privileged caller can redirect ACL read or write operations to arbitrary files or directories, enabling unauthorized manipulation of access control lists and local privilege escalation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- osv-coords4 versionspkg:rpm/almalinux/aclpkg:rpm/almalinux/libaclpkg:rpm/almalinux/libacl-develpkg:rpm/opensuse/acl&distro=openSUSE%20Tumbleweed
< 2.4.0-1.el9_8+ 3 more
- (no CPE)range: < 2.4.0-1.el9_8
- (no CPE)range: < 2.4.0-1.el9_8
- (no CPE)range: < 2.4.0-1.el9_8
- (no CPE)range: < 2.4.0-1.1
Patches
Vulnerability mechanics
References
14- access.redhat.com/errata/RHSA-2026:34351nvd
- access.redhat.com/errata/RHSA-2026:42736nvd
- access.redhat.com/errata/RHSA-2026:42739nvd
- access.redhat.com/errata/RHSA-2026:43420nvd
- access.redhat.com/errata/RHSA-2026:44481nvd
- access.redhat.com/errata/RHSA-2026:46836nvd
- access.redhat.com/errata/RHSA-2026:50205nvd
- access.redhat.com/errata/RHSA-2026:53371nvd
- access.redhat.com/security/cve/CVE-2026-54369nvd
- bugzilla.redhat.com/show_bug.cginvd
- cgit.git.savannah.nongnu.org/cgit/acl.git/commit/nvd
- cgit.git.savannah.nongnu.org/cgit/acl.git/commit/nvd
- security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-54369.jsonnvd
- www.vulncheck.com/advisories/acl-symlink-traversal-privilege-escalation-via-libacl-functionsnvd
News mentions
0No linked articles in our index yet.