Bug 2523574 (CVE-2026-79783) - CVE-2026-79783 github.com/rclone/rclone: rclone: Privilege Escalation via setuid/setgid metadata
Summary: CVE-2026-79783 github.com/rclone/rclone: rclone: Privilege Escalation via set...
Keywords:
Status: NEW
Alias: CVE-2026-79783
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-08-25 15:35 UTC by OSIDB Bzimport
Modified: 2026-08-31 12:11 UTC (History)
9 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-08-25 15:35:13 UTC
rclone before 1.74.4 fails to mask special permission bits when applying source-supplied mode metadata in the local backend, allowing attackers to set setuid/setgid bits on attacker-controlled files. When copying with metadata preservation from an untrusted remote, attackers can plant a setuid binary that escalates privileges to root if rclone runs as root, or to the service account user otherwise.


Note You need to log in before you can comment on or make changes to this bug.