What is CVE-2026-52817?
A vulnerability in Linuxfabrik Monitoring Plugins allows Icinga/Nagios accounts to execute `apt-get` as root without argument restrictions, enabling privilege escalation for an attacker who already has access. Systems should be updated to version 5.1.0 immediately and the sudoers policy reviewed.
Azərbaycanca: Linuxfabrik Monitoring Plaginlərindəki boşluq Icinga/Nagios hesablarına `apt-get` əmrini root kimi məhdudiyyətsiz işlətməyə imkan verir, bu isə artıq giriş əldə etmiş hücumçuya imtiyazları yüksəltmək şansı yaradır. Sistemlər dərhal 5.1.0 versiyasına yenilənməli və sudoers siyasəti yoxlanılmalıdır.
Related CVEs
link basis: same weakness class CWE-269
FAQ2
Which accounts does CVE-2026-52817 allow to execute `apt-get` as root?
The vulnerability allows Icinga/Nagios accounts to execute `apt-get` as root without argument restrictions.
What are the recommended mitigations for CVE-2026-52817?
Systems should be updated to version 5.1.0 immediately and the sudoers policy reviewed.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.