Missing Release of File Descriptor or Handle after Effective Lifetime Affecting util-linux-tty-tools package, versions <2.41.1-160000.5.1


Severity

Recommended
0.0
medium
0
10

Based on SUSE Linux Enterprise Server security rating.

Threat Intelligence

EPSS
0.19% (8th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-SLES1600-UTILLINUXTTYTOOLS-20187128
  • published28 Sept 2026
  • disclosed22 Sept 2026

Introduced: 22 Sep 2026

NewCVE-2026-78408  (opens in a new tab)
CWE-775  (opens in a new tab)

How to fix?

Upgrade SLES:16.0.0 util-linux-tty-tools to version 2.41.1-160000.5.1 or higher.

NVD Description

Note: Versions mentioned in the description apply only to the upstream util-linux-tty-tools package and not the util-linux-tty-tools package as distributed by SLES. See How to fix? for SLES:16.0.0 relevant fixed versions and status.

The nsenter --join-cgroup option opens the target cgroup.procs file as root and leaves that file descriptor open across later namespace and credential changes and across execve(). Because the kernel checks later cgroup migrations using the credentials from the original open, a program run in an attacker-controlled target can inherit root's ability to move host processes between cgroups. After a privileged operator uses --join-cgroup against that target, an unprivileged user can migrate and terminate unrelated root processes.

CVSS Base Scores

version 3.1