CVE-2026-93658

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Peaked 1d ago at 1 mentions (2026-09-18); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-09-18: 1Mentions · 2026-09-19: 109-1809-19
Referenced assets1 URL
By indicator
Full discourse2 posts
  • Upwind Security MDR@UpwindMDR

    🚨High - uutils coreutils install setuid/setgid ordering Privilege Escalation (CVE-2026-93658) uutils coreutils 'install' applies setuid/setgid mode bits on the destination before final chown/chgrp completes. If the ownership change fails, a leftover setuid executable can remain owned by the privileged invoker, letting an attacker execute it to gain elevated privileges on capability-restricted systems. 👉Affected: uutils coreutils < 0.10.0 | Upgrade to 0.10.0

    0000039
    304 followersView on X
  • CVE@CVEnew

    CVE-2026-93658 uutils coreutils versions before 0.10.0 apply setuid or setgid mode to install destinations before finalizing ownership changes, allowing privileged users to leave se… https://www.cve.org/CVERecord?id=CVE-2026-93658

    00000697
    58.1K followersView on X

Explore more