PT-2026-35169 · Unknown · Bubblewrap

·

CVE-2026-41163

·

Published

2026-04-23

·

Updated

2026-05-20

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions bubblewrap versions 0.11.0 through 0.11.1
Description Privilege escalation is possible if the software is installed as setuid root, occurring via ptrace (a system call used for process tracing and debugging).
Recommendations Update to version 0.11.2 or later.

Exploit

Fix

LPE

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-41163
GHSA-XQ78-7HW4-5JVP
OPENSUSE-SU-2026:10671-1
OPENSUSE-SU-2026:20811-1
SUSE-SU-2026:2094-1
SUSE-SU-2026:21847-1
USN-8288-1

Affected Products

Bubblewrap