Skip to content
Red HatCVE-2026-76925

Red Hat Flatpak: race condition

Medium5.8CVE-2026-76925 · Published Sep 4, 2026 · updated Sep 8, 2026

A flaw was found in Flatpak. A Time-of-check to time-of-use (TOCTOU) race condition exists in the `org.freedesktop.Flatpak.SystemHelper` component. This vulnerability occurs because a privileged `chmod` operation executes before the OSTree repository validation within the `Deploy()` function. An attacker can exploit this timing window to redirect symlinks to arbitrary files, potentially leading to unauthorized file manipulation or information disclosure.

Red Hat advisory

Affected versions

PackageAffectedFixed in
Red Hat Enterprise Linux 10
Product
all versionsNo fix yet
Red Hat Enterprise Linux 7
Product
all versionsNo fix yet
Red Hat Enterprise Linux 8
Product
all versionsNo fix yet
Red Hat Enterprise Linux 9
Product
all versionsNo fix yet
Details and references
CVSS 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:L
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-367

More Red Hat advisories

All Red Hat
Advisory
Red Hat libtpms: denial of service
Medium6.5Sep 4
Red Hat libsoup.: reachable assertion
Medium5.9Sep 4
Red Hat Enterprise Linux 10: integer overflow
Medium6.5Sep 4
Red Hat: heap buffer overflow
High7.5Sep 4
Red Hat libsoup: use after free
High7.6Sep 4
Red Hat Ansible Automation Platform 2: improper signature check
Medium5.9Sep 3

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.