
🚨High - uutils coreutils install setuid/setgid ordering Privilege Escalation (CVE-2026-93658) uutils coreutils 'install' applies setuid/setgid mode bits on the destination before final chown/chgrp completes. If the ownership change fails, a leftover setuid executable can remain owned by the privileged invoker, letting an attacker execute it to gain elevated privileges on capability-restricted systems. 👉Affected: uutils coreutils < 0.10.0 | Upgrade to 0.10.0

