{"id":"DEBIAN-CVE-2026-8933","details":"A local privilege escalation vulnerability exists in snap-confine, a set-capabilities core component used internally by Canonical snapd to construct the secure execution environment for snap applications. This vulnerability uniquely affects versions of snap-confine configured with set-capabilities (rather than standard set-uid-root installations). Due to a flaw in how privilege boundaries or security sandboxes are initialized when the binary runs under limited ambient capabilities, a local, unprivileged attacker can exploit this behavior to bypass intended restrictions and execute arbitrary code. Successful exploitation allows the local user to elevate their privileges to full root authority.","modified":"2026-09-14T17:03:37.648625817Z","published":"2026-07-21T15:16:39.563Z","upstream":["CVE-2026-8933"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2026-8933"}],"affected":[{"package":{"name":"snapd","ecosystem":"Debian:13","purl":"pkg:deb/debian/snapd?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.68.3-3","2.68.3-3+deb13u1","2.71-1","2.71-2","2.71-3","2.72-1","2.73-3","2.73-4","2.74.1-1","2.75.2-1","2.75.2-2","2.76-1","2.76.3-1","2.76.3-2"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-8933.json"}},{"package":{"name":"snapd","ecosystem":"Debian:14","purl":"pkg:deb/debian/snapd?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.76.3-1"}]}],"versions":["2.68.3-3","2.71-1","2.71-2","2.71-3","2.72-1","2.73-3","2.73-4","2.74.1-1","2.75.2-1","2.75.2-2","2.76-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-8933.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}