CVE-2026-100310: GNU libextractor < 1.16 Privilege Escalation via LIBEXTRACTOR_PREFIX
GNU libextractor before 1.16 can be locally escalated via the LIBEXTRACTOR_PREFIX search path.
An untrusted search path flaw, CVE-2026-100310, affects GNU libextractor versions before 1.16. The library uses getenv("LIBEXTRACTOR_PREFIX") in extractor_plugpath.c to choose plugin search paths without verifying the calling process. Controlling that variable can redirect plugin loading and enable local privilege escalation. The report does not describe observed exploitation.
46